CVE · High

CVE-2023-1888 — Directorist: AI-Powered Business Directory, Listings & Classified Ads [directorist] < 7.5.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-1888 Directorist: AI-Powered Business Directory, Listings & Classified Ads [directorist] < 7.5.5 Improper Input Validation High 8.8 < 7.5.5 7.5.5 2023-06-01

CVE-2023-1888

The Directorist plugin for WordPress versions below 7.5.5 contained a privilege escalation vulnerability that could enable an attacker with a low-privileged account to elevate their access level to higher permissions. By exploiting this flaw, an adversary could potentially gain complete administrative control over the affected website. The vulnerability was discovered by Alex Thomas and has been patched in version 7.5.5 and later.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.