theme

Supreme Directory Vulnerabilities

1 known security issue reported for the Supreme Directory WordPress theme. Most recent disclosed Aug 19, 2018.

1 medium

Running Supreme Directory on your site? Check whether your installed version is affected.

Scan your site free

Supreme Directory < 1.1.9 - Cross-Site Scripting

medium

The Supreme Directory plugin for WordPress is vulnerable to Cross-Site Scripting via the 's' parameter in versions before 1.1.9 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web scripts that execute in a victim's browser.

CVSS:
6.1
Affected:
up to 1.1.9
Fixed in:
1.1.9
Disclosed:
Aug 19, 2018

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database