Geodirectory

WordPress plugin · geodirectory · WordPress.org ↗
0
Critical
1
High
3
Known total
0
Unfixed
Running Geodirectory on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
HIGH
CVSS 7.5
GeoDirectory < 2.8.169 - Unauthenticated Pending/Draft Listing Disclosure via markers REST Endpoint
CVE.org
>=0, <2.8.169 v2.8.169 CVE-2026-16988 Aug 9, 2026
MEDIUM
CVSS 6.5
GeoDirectory < 2.8.168 - Contributor+ User Email Disclosure via geodir_json_search_users
CVE.org
>=0, <2.8.168 v2.8.168 CVE-2026-16968 Aug 5, 2026
LOW
CVSS 3.5
GeoDirectory < 2.8.110 - Editor+ Stored XSS via Place Categories
CVE.org
>=0, <2.8.110 v2.8.110 CVE-2025-15677 Aug 5, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.