Impact
The WP Directory Kit plugin, up to version 1.5.7, fails to verify the status or owner of a listing before returning its content via the map_infowindow AJAX action. This flaw allows any visitor without authentication to retrieve draft or unapproved listings that belong to other users, exposing sensitive information that should remain private.
Affected Systems
WordPress sites that have installed WP Directory Kit 1.5.7 or earlier are affected. Site administrators should verify whether their installations still use the vulnerable plugin version; any deployment of version 1.5.7 or below is subject to this vulnerability.
Risk and Exploitability
The flaw carries a CVSS score of 5.3, indicating moderate severity. EPSS is less than 1%, suggesting a low likelihood of widespread exploitation at present, and the vulnerability is not listed in CISA’s KEV catalog. Since it is an unauthenticated information disclosure, an attacker only needs to send a crafted AJAX request to the map_infowindow endpoint; no additional credentials or privileges are required.
OpenCVE Enrichment