CVE-2025-15677 | GeoDirectory Plugin up to 2.8.109 on WordPress Place Category Setting place-category cross site scripting
A vulnerability marked as problematic has been reported in GeoDirectory Plugin up to 2.8.109 on WordPress. Impacted is an unknown function of the component Place Category Setting. Performing a manipulation of the argument place-category results in cross site scripting.
This vulnerability is identified as CVE-2025-15677. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More