Post
OffSequence
offseq.bsky.social
did:plc:t5t6qep2vfipbi7f54demwev
DevKit Pro (<=2.3.0) suffers a CRITICAL auth bypass (CVE-2026-14378) letting attackers seize WordPress admin control. Disable or limit plugin access now — patch status unconfirmed. https://radar.offseq.com/threat/cve-2026-14378-cwe-287-improper-authentication-in-dplugins-devkit-pro-45d2af96cf344d...
https://radar.offseq.com/threat/cve-2026-14378-cwe-287-improper-authentication-in-dplugins-devkit-pro-45d2af96cf344d90
2026-10-02T04:30:25.263Z