Pricing
Case studies
Login
Start trial
DirectoryPress
Designinvento
Developer
3.6.27
Latest version
900
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
11 patched
4 Mitigation rules
WordPress DirectoryPress - Business Directory And Classified Ad Listing plugin <= 3.6.26 - Unauthenticated SQL Injection via 'packages' vulnerability
<= 3.6.26
4 hours ago
Sensitive Data Exposure vulnerability
<= 3.6.26
23/03/2026
Broken Access Control vulnerability
<= 3.6.26
18/12/2025
Broken Access Control vulnerability
<= 3.6.25
18/12/2025
Cross Site Scripting (XSS) vulnerability
<= 3.6.25
18/10/2025
Cross Site Request Forgery (CSRF) vulnerability
<= 3.6.22
04/04/2025
Cross Site Scripting (XSS) vulnerability
<= 3.6.19
06/01/2025
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
<= 3.6.16
24/12/2024
SQL Injection vulnerability
<= 3.6.10
11/07/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 3.6.7
16/04/2024
Unauthenticated Broken Access Control Vulnerability
<= 3.6.2
12/07/2023