WP Clinic
Log in Sign up

CVE · High

CVE-2023-1888 — Directorist: AI-Powered Business Directory, Listings & Classified Ads [directorist] < 7.5.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2023-1888 Directorist: AI-Powered Business Directory, Listings & Classified Ads [directorist] < 7.5.5 Improper Input Validation High 8.8 < 7.5.5 7.5.5 2023-06-01

CVE-2023-1888

Update the WordPress Directorist plugin to the latest available version (at least 7.5.5). Alex Thomas discovered and reported this Privilege Escalation vulnerability in WordPress Directorist Plugin. This could allow a malicious actor to escalate their low privileged account to something with higher privileges. After this they could take full control of the website if high privileges are gained. This vulnerability has been fixed in version 7.5.5.

Source: Patchstack

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.