CVE-2025-13390: WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover
The WP Directory Kit plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.4.4 due to incorrect implementation of the authentication algorithm in the "wdkgenerateautologinlink" function. This is due to the feature using a cryptographically weak token generation mechanism. This makes it possible for unauthenticated attackers to gain administrative access and achieve full site takeover via the auto-login endpoint with a predictable token.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13390?
CVE-2025-13390 is classified as a critical vulnerability due to the potential for unauthorized access.
How do I fix CVE-2025-13390?
To fix CVE-2025-13390, update the WP Directory Kit plugin to version 1.4.5 or later.
What versions of WP Directory Kit are affected by CVE-2025-13390?
CVE-2025-13390 affects all versions of WP Directory Kit up to and including 1.4.4.
What type of vulnerability is CVE-2025-13390?
CVE-2025-13390 is an authentication bypass vulnerability.
Can CVE-2025-13390 lead to data exposure?
Yes, CVE-2025-13390 can potentially lead to unauthorized user access, resulting in data exposure.