A vulnerability classified as critical has been found in Hustle Plugin up to 7.8.9.2 on WordPress. The impacted element is the function action_import_module. Performing a manipulation results in unrestricted upload.

This vulnerability is cataloged as CVE-2026-0911. It is possible to initiate the attack remotely. There is no exploit available.