WP Directory Kit WordPress 插件在 1.5.7 及之前版本中,在未检查列表的状态或所有权的情况下,通过其公共 AJAX 操作返回列表内容,使得未认证的攻击者能够读取属于其他用户的草稿或未批准的列表。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | WP Directory Kit | 0 ~ 1.5.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-16592 | WP Directory Kit <= 1.5.7 - Contributor+ Non-Public Listing Field Disclosure via Shortcode | |
| CVE-2026-16593 | WP Directory Kit <= 1.5.7 - Editor+ SQL Injection via Elementor Category and Location Widg |
No comments yet