Unauthenticated Access Control Vulnerability in Business Directory Plugin by WordPress
CVE-2026-57339
6.6MEDIUM
What is CVE-2026-57339?
An unauthenticated broken access control vulnerability exists in the Business Directory Plugin for WordPress that allows attackers to bypass restrictions and gain unauthorized access to sensitive features. This flaw affects versions 6.4.23 and earlier, necessitating prompt updates to mitigate potential security risks.
Affected Version(s)
Business Directory <= 6.4.23