CVE-2026-16595: WP Directory Kit < 1.5.5 - Subscriber+ User and Unpublished Listing Disclosure
The WP Directory Kit WordPress plugin before 1.5.5 does not perform authorization or nonce checks on one of its authenticated AJAX actions, allowing any authenticated user such as a Subscriber to disclose the site's user list and unpublished listings belonging to other users.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-16595?
CVE-2026-16595 has a risk rating of 40, indicating it poses a significant security risk.
How do I fix CVE-2026-16595?
To fix CVE-2026-16595, update the WP Directory Kit plugin to version 1.5.5 or later.
What kind of information can be disclosed due to CVE-2026-16595?
CVE-2026-16595 allows authenticated users to disclose the site's user list and unpublished listings belonging to other users.
Which versions of the WP Directory Kit are affected by CVE-2026-16595?
CVE-2026-16595 affects all versions of the WP Directory Kit plugin prior to 1.5.5.
Who is at risk due to CVE-2026-16595?
Authenticated users, including those with Subscriber roles, are at risk of exploiting CVE-2026-16595.