Home/Product/wpdirectorykit wp directory kit
Product

wpdirectorykit wp directory kit

13 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-13390
<= 1.4.4
The WP Directory Kit plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.4.4 due t
10.0CRITICAL
CVE-2023-41875
< 1.2.7
Missing Authorization vulnerability in wpdirectorykit.com WP Directory Kit allows Exploiting Incorrectly Configured Access Control
5.3MEDIUM
CVE-2024-37487
< 1.3.6
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in wpdirectorykit.Com WP
7.1HIGH
CVE-2024-37253
< 1.3.7
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in WpDirectoryKit
2.7LOW
CVE-2024-3217
< 1.3.1
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'attribute_value' and 'attribute_id' parameters i
8.8HIGH
CVE-2024-29774
< 1.3.0
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WpDirectoryKit WP Directory
7.1HIGH
CVE-2023-31229
< 1.2.0
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP Directory Kit.This issue affects WP Directory Kit: from n/
4.7MEDIUM
CVE-2023-2279
< 1.2.2
The WP Directory Kit plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.1. Thi
5.4MEDIUM
CVE-2023-2351
< 1.2.4
The WP Directory Kit plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing cap
6.5MEDIUM
CVE-2023-2278
< 1.2.0
The WP Directory Kit plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.9 via the 'w
9.8CRITICAL
CVE-2023-2277
< 1.2.0
The WP Directory Kit plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.9. Thi
6.1MEDIUM
CVE-2023-2280
< 1.2.3
The WP Directory Kit plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing cap
6.5MEDIUM
CVE-2023-2835
<= 1.2.3
The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search' parameter in versions u
6.1MEDIUM
threatengine.sh