A vulnerability was found in wpWax Directorist Plugin up to 8.5.10 on WordPress. It has been declared as critical. This impacts an unknown function. Executing a manipulation can lead to missing authorization.
This vulnerability appears as CVE-2026-39509. The attack may be performed from remote. There is no available exploit.