Pricing
WordPress securityInstantly fix and mitigate vulnerabilitiesPlugin auditingPaid auditing for WordPress vendorsManaged VDPStart a security program for your pluginsBug BountyJoin the community and earn bountiesEnterprise APIAt scale monitoring and vPatching for hostsVulnerability databaseThe latest WordPress security intelligence
Login Start trial
Plugin Icon

GeoDirectory

Paolo

Developer

2.8.141

Latest version

10,000

Installations

4 days ago

Last updated

WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
    Vulnerabilities

Vulnerability history

0 present
14 fixed
5 Mitigation rules
  • Missing Authorization to Authenticated (Author+) Arbitrary Image Attachment vulnerability
    <= 2.8.139
    6 days ago
  • Unauthenticated SQL Injection vulnerability
    <= 2.8.97
    Jul 25, 2025
  • Contributor+ Stored XSS vulnerability
    < 2.8.120
    Jul 11, 2025
  • Authenticated (Subscriber+) Stored Cross-Site Scripting via Display_name Parameter vulnerability
    <= 2.8.97
    Feb 10, 2025
  • Cross Site Scripting (XSS) vulnerability
    <= 2.3.84
    Dec 30, 2024
  • Cross Site Scripting (XSS) vulnerability
    <= 2.3.80
    Oct 24, 2024
  • Broken Access Control vulnerability
    <= 2.3.70
    Aug 28, 2024
  • SQL Injection vulnerability
    <= 2.3.61
    Aug 7, 2024
  • Authenticated (Contributor+) Stored Cross-Site Scripting via 'gd_single_tabs' Shortcode vulnerability
    <= 2.3.48
    Apr 23, 2024
  • SQL Injection vulnerability
    <= 2.3.28
    Dec 21, 2023
  • Admin+ SQLi vulnerability
    < 2.2.24
    Feb 1, 2023
  • Contributor+ Stored XSS via Shortcode vulnerability
    < 2.2.22
    Dec 29, 2022
  • CSV Injection vulnerability
    <= 2.2.19
    Dec 21, 2022
  • Authenticated Stored Cross-Site Scripting (XSS) vulnerability
    <= 2.1.1.2
    Sep 2, 2021

Vulnerability mitigation

  • Pricing
  • Application security (SCA)
  • RapidMitigate New
  • Threat Intelligence (API)
  • Documentation
  • VS Monarx
  • VS Imunify360
  • VS Wordfence
  • Log in

Code security

  • Managed VDP New
  • Active VDP directory
  • Security auditing
  • Compliance (CRA) New
  • Log in New

Bug bounty

  • Bug bounty
  • Leaderboard
  • Guidelines
  • Learn New
  • Report
  • Discord
  • Log in New

Use cases

  • Web developers
  • Webhosts New
  • Software vendors
  • WordPress
  • WooCommerce

Resources

  • Vulnerability database
  • Whitepaper 2025 New
  • Articles
  • Case studies New
  • Webinars New
  • Vulnerability statistics

Patchstack

  • About
  • Careers
  • Merch store
  • Media kit
  • LinkedIn
  • Facebook
  • X
© 2025 Patchstack
DPA
Privacy Policy
Accessibility
Terms & Conditions
EU Flag