PT-2026-82468 · WordPress · Geodirectory
CVE-2026-81271
·
Published
2026-08-27
·
Updated
2026-08-27
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
GeoDirectory versions prior to 2.8.177
Description
An unauthenticated Cross Site Request Forgery (CSRF) issue exists, which allows an attacker to induce a user to perform actions they did not intend to execute. CSRF is a type of attack that tricks a victim into submitting a malicious request to a web application where they are currently authenticated.
Recommendations
Update GeoDirectory to a version newer than 2.8.176.
Fix
CSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Geodirectory