CVE-2026-96766 | paoltaia GeoDirectory Plugin up to 2.8.183 on WordPress Save business_hours cross site scripting
A vulnerability was found in paoltaia GeoDirectory Plugin up to 2.8.183 on WordPress. It has been declared as problematic. The impacted element is an unknown function of the component Save Handler. Such manipulation of the argument business_hours leads to cross site scripting.
This vulnerability is documented as CVE-2026-96766. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More