VendorsAyeCodegeodirectoryall versions
Vulnerabilities

AyeCode GeoDirectory

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2024-43145
WordPress GeoDirectory plugin <= 2.3.61 - SQL Injection vulnerability
Published 2024-08-18 · Analyzed
8.8EPSS 0.004
CVE-2024-43981
WordPress GeoDirectory plugin <= 2.3.70 - Broken Access Control vulnerability
Published 2024-11-01 · Analyzed
8.8EPSS 0.004
CVE-2023-50845
WordPress GeoDirectory Plugin <= 2.3.28 is vulnerable to SQL Injection
Published 2023-12-28 · Modified
7.6EPSS 0.005
CVE-2024-56259
WordPress GeoDirectory plugin <= 2.3.84 - Cross Site Scripting (XSS) vulnerability
Published 2025-01-02 · Modified
6.5EPSS 0.003
CVE-2024-50437
WordPress GeoDirectory plugin <= 2.3.80 - Cross Site Scripting (XSS) vulnerability
Published 2024-10-28 · Modified
6.5EPSS 0.002
CVE-2024-3732
GeoDirectory – WordPress Business Directory Plugin, or Classified Directory <= 2.3.48 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'gd_single_tabs' Shortcode
Published 2024-04-23 · Modified
6.4EPSS 0.003
CVE-2025-6200
GeoDirectory < 2.8.120 - Contributor+ Stored XSS
Published 2025-07-11 · Modified
5.9EPSS 0.002
CVE-2021-24720
GeoDirectory < 2.1.1.3 - Authenticated Stored Cross-Site Scripting (XSS)
Published 2021-10-11 · Modified
5.4EPSS 0.009
CVE-2022-4775
GeoDirectory < 2.2.22 - Contributor+ Stored XSS via Shortcode
Published 2023-01-23 · Modified
5.4EPSS 0.005