CVE-2026-93897 | paoltaia GeoDirectory Plugin up to 2.8.181 on WordPress strpos phone cross site scripting
A vulnerability has been found in paoltaia GeoDirectory Plugin up to 2.8.181 on WordPress and classified as problematic. This issue affects the function strpos. The manipulation of the argument phone leads to cross site scripting.
This vulnerability is listed as CVE-2026-93897. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More