High 7.3 Unfixed
2026-03-05≤ 2.5.6
CVE-2026-27396
Minimum safe version
1.9.5
Update to 1.9.5 or later to address 1 fixable vulnerability
CVE-2026-27396
CVE-2025-64243
CVE-2025-52748
WordPress Directory Pro Plugin <= 2.5.5 is vulnerable to Cross Site Scripting (XSS)
WordPress directory-pro Plugin < 1.9.5 is vulnerable to Privilege Escalation