WP Directory Kit < 1.5.7 - Unauthenticated Information Exposure
medium
The WP Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 1.5.7. This makes it possible for unauthenticated attackers to extract sensitive user or configuration data.
- CVSS:
- 5.3
- Affected:
- up to 1.5.7
- Fixed in:
- 1.5.7
- Disclosed:
- Aug 21, 2026
CVE-2026-18231 on NVD →
WP Directory Kit < 1.5.7 - Authenticated (Administrator+) SQL Injection
medium
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection in all versions up to 1.5.7. This is due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with administrator-level access and...
- CVSS:
- 4.9
- Affected:
- up to 1.5.7
- Fixed in:
- 1.5.7
- Disclosed:
- Aug 20, 2026
CVE-2026-18653 on NVD →
Directory Kit <= 1.5.4 - Unauthenticated SQL Injection
high
The Directory Kit plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.5.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries in...
- CVSS:
- 7.5
- Affected:
- up to 1.5.4
- Fixed in:
- 1.5.5
- Disclosed:
- Aug 12, 2026
CVE-2026-28001 on NVD →
WP Directory Kit <= 1.5.4 - Unauthenticated SQL Injection
medium
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection in all versions up to, and including, 1.5.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL qu...
- CVSS:
- 5.9
- Affected:
- up to 1.5.4
- Fixed in:
- 1.5.5
- Disclosed:
- Aug 11, 2026
CVE-2026-27538 on NVD →
Directory Kit <= 1.5.5 - Unauthenticated SQL Injection
high
The Directory Kit plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.5.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries in...
- CVSS:
- 7.5
- Affected:
- up to 1.5.5
- Fixed in:
- 1.5.6
- Disclosed:
- Aug 10, 2026
CVE-2026-18474 on NVD →
Directory Kit <= 1.5.5 - Authenticated (Subscriber+) SQL Injection
medium
The Directory Kit plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.5.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with subscriber-level access and abo...
- CVSS:
- 6.5
- Affected:
- up to 1.5.5
- Fixed in:
- 1.5.6
- Disclosed:
- Aug 10, 2026
CVE-2026-18230 on NVD →
Directory Kit <= 1.5.4 - Unauthenticated SQL Injection
high
The Directory Kit plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.5.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries in...
- CVSS:
- 7.5
- Affected:
- up to 1.5.4
- Fixed in:
- 1.5.5
- Disclosed:
- Aug 3, 2026
CVE-2026-18473 on NVD →
Directory Kit <= 1.5.4 - Authenticated (Subscriber+) SQL Injection
medium
The Directory Kit plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.5.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with subscriber-level access and abo...
- CVSS:
- 6.5
- Affected:
- up to 1.5.4
- Fixed in:
- 1.5.5
- Disclosed:
- Aug 3, 2026
CVE-2026-16589 on NVD →
Directory Kit <= 1.5.4 - Information Exposure to Authenticated (Subscriber+) User and Unpublished Listing Disclosure
medium
The Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.5.4. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract sensitive user or configuration data.
- CVSS:
- 4.3
- Affected:
- up to 1.5.4
- Fixed in:
- 1.5.5
- Disclosed:
- Aug 3, 2026
CVE-2026-16595 on NVD →
Directory Kit <= 1.5.4 - Authenticated (Subscriber+) Plugin Settings and API Key Disclosure
medium
The Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.5.4. This is due to missing allowlist validation on the user-controlled `page` parameter passed to the AJAX controller, allowing any authenticated user to route requests to privileged settings cont...
- CVSS:
- 4.3
- Affected:
- up to 1.5.4
- Fixed in:
- 1.5.5
- Disclosed:
- Aug 3, 2026
CVE-2026-16594 on NVD →
Directory Kit <= 1.5.4 - Authenticated (Subscriber+) Contact Message and User Data Disclosure
medium
The Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.5.4. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract sensitive user or configuration data.
- CVSS:
- 4.3
- Affected:
- up to 1.5.4
- Fixed in:
- 1.5.5
- Disclosed:
- Aug 3, 2026
CVE-2026-16590 on NVD →
WP Directory Kit <= 1.5.1 - Unauthenticated SQL Injection
high
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.5.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries...
- CVSS:
- 7.5
- Affected:
- up to 1.5.1
- Fixed in:
- 1.5.2
- Disclosed:
- May 14, 2026
CVE-2026-42672 on NVD →
WP Directory Kit <= 1.5.0 - Unauthenticated SQL Injection
high
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.5.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries...
- CVSS:
- 7.5
- Affected:
- up to 1.5.0
- Fixed in:
- 1.5.1
- Disclosed:
- Apr 13, 2026
CVE-2026-39531 on NVD →
WP Directory Kit <= 1.5.0 - Missing Authorization
medium
The WP Directory Kit plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 1.5.0. This makes it possible for unauthenticated attackers to perform an unauthorized action.
- CVSS:
- 5.3
- Affected:
- up to 1.5.0
- Fixed in:
- 1.5.1
- Disclosed:
- Apr 8, 2026
CVE-2026-39534 on NVD →
WP Directory Kit [wpdirectorykit] < 1.5.0
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.9 via the wdk_public_action AJAX handler. This makes it possible for unauthenticated attackers to extract email addresses for users with Directory Kit-specific user roles.
- Affected:
- up to 1.5.0
- Fixed in:
- 1.5.0
- Disclosed:
- Jan 24, 2026
CVE-2025-13920 on NVD →
WP Directory Kit <= 1.4.9 - Unauthenticated Email Exposure via wdk_public_action
medium
The WP Directory Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.9 via the wdk_public_action AJAX handler. This makes it possible for unauthenticated attackers to extract email addresses for users with Directory Kit-specific user roles.
- CVSS:
- 5.3
- Affected:
- up to 1.4.9
- Fixed in:
- 1.5.0
- Disclosed:
- Jan 23, 2026
CVE-2025-13920 on NVD →
WP Directory Kit [wpdirectorykit] < 1.4.8
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'hide_fields' and the 'attr_search' parameter in all versions up to, and including, 1.4.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possibl...
- Affected:
- up to 1.4.8
- Fixed in:
- 1.4.8
- Disclosed:
- Dec 13, 2025
CVE-2025-13089 on NVD →
WP Directory Kit <= 1.4.7 - Unauthenticated SQL Injection
high
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'hide_fields' and the 'attr_search' parameter in all versions up to, and including, 1.4.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for...
- CVSS:
- 7.5
- Affected:
- up to 1.4.7
- Fixed in:
- 1.4.8
- Disclosed:
- Dec 12, 2025
CVE-2025-13089 on NVD →
WP Directory Kit <= 1.4.4 - Authentication Bypass to Privilege Escalation via Account Takeover
critical
The WP Directory Kit plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.4.4 due to incorrect implementation of the authentication algorithm in the "wdk_generate_auto_login_link" function. This is due to the feature using a cryptographically weak token generation mechanis...
- CVSS:
- 10
- Affected:
- 1.4.0 – 1.4.4
- Fixed in:
- 1.4.5
- Disclosed:
- Dec 3, 2025
CVE-2025-13390 on NVD →
WP Directory Kit [wpdirectorykit] < 1.4.5
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.4.4 due to incorrect implementation of the authentication algorithm in the "wdk_generate_auto_login_link" function. This is due to the feature using a cryptographically weak token generation mec...
- Affected:
- up to 1.4.5
- Fixed in:
- 1.4.5
- Disclosed:
- Dec 3, 2025
CVE-2025-13390 on NVD →
WP Directory Kit [wpdirectorykit] < 1.4.7
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'search' parameter in all versions up to, and including, 1.4.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attacke...
- Affected:
- up to 1.4.7
- Fixed in:
- 1.4.7
- Disclosed:
- Dec 2, 2025
CVE-2025-13090 on NVD →
WP Directory Kit <= 1.4.6 - Authenticated (Admin+) SQL Injection
medium
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'search' parameter in all versions up to, and including, 1.4.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, w...
- CVSS:
- 4.9
- Affected:
- up to 1.4.6
- Fixed in:
- 1.4.7
- Disclosed:
- Dec 1, 2025
CVE-2025-13090 on NVD →
WP Directory Kit [wpdirectorykit] < 1.4.6
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'order_by' parameter in all versions up to, and including, 1.4.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in page...
- Affected:
- up to 1.4.6
- Fixed in:
- 1.4.6
- Disclosed:
- Nov 27, 2025
CVE-2025-13525 on NVD →
WP Directory Kit <= 1.4.5 - Reflected Cross-Site Scripting via 'order_by' Parameter
medium
The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'order_by' parameter in all versions up to, and including, 1.4.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages tha...
- CVSS:
- 6.1
- Affected:
- up to 1.4.5
- Fixed in:
- 1.4.6
- Disclosed:
- Nov 26, 2025
CVE-2025-13525 on NVD →
WP Directory Kit [wpdirectorykit] < 1.4.4
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'columns_search' parameter of the select_2_ajax() function in all versions up to, and including, 1.4.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This mak...
- Affected:
- up to 1.4.4
- Fixed in:
- 1.4.4
- Disclosed:
- Nov 21, 2025
CVE-2025-13138 on NVD →
WP Directory Kit <= 1.4.3 - Unauthenticated SQL Injection via select_2_ajax() Function
high
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'columns_search' parameter of the select_2_ajax() function in all versions up to, and including, 1.4.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it...
- CVSS:
- 7.5
- Affected:
- up to 1.4.3
- Fixed in:
- 1.4.4
- Disclosed:
- Nov 20, 2025
CVE-2025-13138 on NVD →
WP Directory Kit <= 1.4.0 - Missing Authorization
medium
The WP Directory Kit plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.4.0. This makes it possible for unauthenticated attackers to perform an unauthorized action.
- CVSS:
- 5.3
- Affected:
- up to 1.4.0
- Fixed in:
- 1.4.1
- Disclosed:
- Sep 26, 2025
CVE-2025-60120 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.7
unknown
[en] Missing Authorization vulnerability in wpdirectorykit.com WP Directory Kit allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Directory Kit: from n/a through 1.2.6.
- Affected:
- up to 1.2.7
- Fixed in:
- 1.2.7
- Disclosed:
- Dec 13, 2024
CVE-2023-41875 on NVD →
WP Directory Kit [wpdirectorykit] < 1.3.6
unknown
[en] Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in wpdirectorykit.Com WP Directory Kit allows Reflected XSS.This issue affects WP Directory Kit: from n/a through 1.3.5.
- Affected:
- up to 1.3.6
- Fixed in:
- 1.3.6
- Disclosed:
- Jul 21, 2024
CVE-2024-37487 on NVD →
WP Directory Kit [wpdirectorykit] < 1.3.7
unknown
[en] Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in WpDirectoryKit WP Directory Kit allows Code Injection.This issue affects WP Directory Kit: from n/a through 1.3.6.
- Affected:
- up to 1.3.7
- Fixed in:
- 1.3.7
- Disclosed:
- Jul 9, 2024
CVE-2024-37253 on NVD →
WP Directory Kit <= 1.3.5 - Reflected Cross-Site Scripting
medium
The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.3.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfull...
- CVSS:
- 6.1
- Affected:
- up to 1.3.5
- Fixed in:
- 1.3.6
- Disclosed:
- Jul 4, 2024
CVE-2024-37487 on NVD →
WP Directory Kit <= 1.3.6 - Authenticated (Admin+) HTML Injection
low
The WP Directory Kit plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 1.3.6. This is due to improper sanitization and escaping on a value. This makes it possible for authenticated attackers, with administrator-level access and above, to inject HTML in a field they should not be...
- CVSS:
- 2.7
- Affected:
- up to 1.3.6
- Fixed in:
- 1.3.7
- Disclosed:
- Jun 26, 2024
CVE-2024-37253 on NVD →
WP Directory Kit [wpdirectorykit] < 1.3.1
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'attribute_value' and 'attribute_id' parameters in all versions up to, and including, 1.3.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possi...
- Affected:
- up to 1.3.1
- Fixed in:
- 1.3.1
- Disclosed:
- Apr 5, 2024
CVE-2024-3217 on NVD →
WP Directory Kit <= 1.3.0 - Authenticated (Subscriber+) SQL Injection
high
The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'attribute_value' and 'attribute_id' parameters in all versions up to, and including, 1.3.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible f...
- CVSS:
- 8.8
- Affected:
- up to 1.3.0
- Fixed in:
- 1.3.1
- Disclosed:
- Apr 4, 2024
CVE-2024-3217 on NVD →
WP Directory Kit [wpdirectorykit] < 1.3.0
unknown
[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WpDirectoryKit WP Directory Kit allows Reflected XSS.This issue affects WP Directory Kit: from n/a through 1.2.9.
- Affected:
- up to 1.3.0
- Fixed in:
- 1.3.0
- Disclosed:
- Mar 27, 2024
CVE-2024-29774 on NVD →
WP Directory Kit <= 1.2.9 - Reflected Cross-Site Scripting
medium
The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 1.2.9 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfull...
- CVSS:
- 6.1
- Affected:
- up to 1.2.9
- Fixed in:
- 1.3.0
- Disclosed:
- Mar 25, 2024
CVE-2024-29774 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.0
unknown
[en] URL Redirection to Untrusted Site ('Open Redirect') vulnerability in WP Directory Kit.This issue affects WP Directory Kit: from n/a through 1.1.9.
- Affected:
- up to 1.2.0
- Fixed in:
- 1.2.0
- Disclosed:
- Dec 29, 2023
CVE-2023-31229 on NVD →
WP Directory Kit <= 1.2.6 - Missing Authorization
medium
The WP Directory Kit plugin for WordPress is vulnerable to unauthorized access to functionality due to a missing capability check on one of its functions in versions up to, and including, 1.2.6. This makes it possible for unauthenticated attackers to make use of functionality intended for users with higher access level...
- CVSS:
- 5.3
- Affected:
- up to 1.2.6
- Fixed in:
- 1.2.7
- Disclosed:
- Sep 5, 2023
CVE-2023-41875 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.2
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.1. This is due to missing or incorrect nonce validation on the 'admin_page_display' function. This makes it possible for unauthenticated attackers to delete or change plugin settings, import...
- Affected:
- up to 1.2.2
- Fixed in:
- 1.2.2
- Disclosed:
- Aug 31, 2023
CVE-2023-2279 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.4
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on the 'ajax_admin' function in versions up to, and including, 1.2.3. This makes it possible for authenticated attackers with subscriber-level permissions or above to dele...
- Affected:
- up to 1.2.4
- Fixed in:
- 1.2.4
- Disclosed:
- Jun 13, 2023
CVE-2023-2351 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.4
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.9 via the 'wdk_public_action' function. This allows unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can b...
- Affected:
- up to 1.2.4
- Fixed in:
- 1.2.4
- Disclosed:
- Jun 13, 2023
CVE-2023-2278 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.2
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.9. This is due to missing or incorrect nonce validation on the 'insert' function. This makes it possible for unauthenticated attackers to update the plugin's settings and inject malicious Jav...
- Affected:
- up to 1.2.2
- Fixed in:
- 1.2.2
- Disclosed:
- Jun 13, 2023
CVE-2023-2277 on NVD →
WP Directory Kit <= 1.2.3 - Missing Authorization to Plugin Settings Change/Delete, Demo Import, Directory Kit Deletion via wdk_admin_action
medium
The WP Directory Kit plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on the 'ajax_admin' function in versions up to, and including, 1.2.3. This makes it possible for authenticated attackers with subscriber-level permissions or above to delete or...
- CVSS:
- 6.5
- Affected:
- up to 1.2.3
- Fixed in:
- 1.2.4
- Disclosed:
- Jun 12, 2023
CVE-2023-2351 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.3
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on the 'ajax_public' function in versions up to, and including, 1.2.2. This makes it possible for unauthenticated attackers to delete or change plugin settings, import dem...
- Affected:
- up to 1.2.3
- Fixed in:
- 1.2.3
- Disclosed:
- Jun 9, 2023
CVE-2023-2280 on NVD →
WP Directory Kit [wpdirectorykit] < 1.2.4
unknown
[en] The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search' parameter in versions up to, and including, 1.2.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that...
- Affected:
- up to 1.2.4
- Fixed in:
- 1.2.4
- Disclosed:
- Jun 2, 2023
CVE-2023-2835 on NVD →
WP Directory Kit <= 1.2.3 - Reflected Cross-Site Scripting via 'search'
medium
The WP Directory Kit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search' parameter in versions up to, and including, 1.2.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that exec...
- CVSS:
- 6.1
- Affected:
- up to 1.2.3
- Fixed in:
- 1.2.4
- Disclosed:
- Jun 1, 2023
CVE-2023-2835 on NVD →
WP Directory Kit <= 1.1.9 - Unauthenticated Local File Inclusion via wdk_public_action
critical
The WP Directory Kit plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.1.9 via the 'wdk_public_action' function. This allows unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be use...
- CVSS:
- 9.8
- Affected:
- up to 1.1.9
- Fixed in:
- 1.2.0
- Disclosed:
- May 26, 2023
CVE-2023-2278 on NVD →
WP Directory Kit <= 1.2.2 - Missing Authorization to Plugin Installation, Settings Change/Delete, Demo Import, Directory Kit Deletion via wdk_public_action
medium
The WP Directory Kit plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on the 'ajax_public' function in versions up to, and including, 1.2.2. This makes it possible for unauthenticated attackers to delete or change plugin settings, import demo dat...
- CVSS:
- 6.5
- Affected:
- up to 1.2.2
- Fixed in:
- 1.2.3
- Disclosed:
- May 2, 2023
CVE-2023-2280 on NVD →
WP Directory Kit <= 1.1.9 - Cross-Site Request Forgery to Stored Cross-Site Scripting via wdk_resultitem
medium
The WP Directory Kit plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.9. This is due to missing or incorrect nonce validation on the 'insert' function. This makes it possible for unauthenticated attackers to update the plugin's settings and inject malicious JavaScri...
- CVSS:
- 6.1
- Affected:
- up to 1.1.9
- Fixed in:
- 1.2.0
- Disclosed:
- Apr 28, 2023
CVE-2023-2277 on NVD →
WP Directory Kit <= 1.2.1 - Cross-Site Request Forgery to Plugin Settings Change/Delete, Demo Import, Directory Kit Modification/Deletion via admin_page_display
medium
The WP Directory Kit plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.1. This is due to missing or incorrect nonce validation on the 'admin_page_display' function. This makes it possible for unauthenticated attackers to delete or change plugin settings, import demo...
- CVSS:
- 5.4
- Affected:
- up to 1.2.1
- Fixed in:
- 1.2.2
- Disclosed:
- Apr 28, 2023
CVE-2023-2279 on NVD →
WP Directory Kit <= 1.1.9 - Open Redirect
medium
The WP Directory Kit plugin for WordPress is vulnerable to Open Redirect in versions up to, and including, 1.1.9. This is due to insufficient validation on the redirect url supplied via the redirect_url parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if t...
- CVSS:
- 5.4
- Affected:
- up to 1.1.9
- Fixed in:
- 1.2.0
- Disclosed:
- Apr 27, 2023
CVE-2023-31229 on NVD →
WP Directory Kit [wpdirectorykit] < 1.4.1
unknown
- Affected:
- up to 1.4.1
- Fixed in:
- 1.4.1
CVE-2025-60120 on NVD →