📦 Directorypress

by Designinvento

🔍 What is Directorypress?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-49633

HIGH CVSS 7.1 Jan 7, 2025

This vulnerability allows attackers to inject malicious scripts into DirectoryPress WordPress plugin pages, which execute in victims' browsers when they visit manipulated URLs. It affects all Director...

CVE-2024-38755

HIGH CVSS 8.5 Jul 22, 2024

This SQL injection vulnerability in the DirectoryPress WordPress plugin allows attackers to execute arbitrary SQL commands on the database. It affects all DirectoryPress installations running versions...

CVE-2024-10584

MEDIUM CVSS 5.4 Dec 24, 2024

The DirectoryPress WordPress plugin is vulnerable to stored XSS via SVG file uploads due to insufficient input sanitization. Authenticated attackers with author-level access can inject malicious scrip...