A vulnerability identified as critical has been detected in WP Support Plus Responsive Ticket System Plugin up to 9.1.2 on WordPress. This affects an unknown function. The manipulation leads to sql injection.

This vulnerability is traded as CVE-2026-11590. It is possible to initiate the attack remotely. There is no exploit available.