CVE-2026-19652: Critical Privilege Escalation Vulnerability in Divi Membership Plugin for WordPress
A critical vulnerability (CVE-2026-19652) with a CVSS score of 9.8 affects the Divi Membership plugin for WordPress, allowing unauthenticated attackers to escalate privileges and take over a site. The vulnerability exists in versions up to and including 2.2.0 and is caused by improper validation of user input in the `dmem_form_submit_handler()` function. Immediate patching is recommended to prevent potential site takeovers.