CVE-2025-10488 | Directorist Plugin up to 8.4.8 on WordPress add_listing_action path traversal (EUVD-2025-35929)
A vulnerability marked as critical has been reported in Directorist Plugin up to 8.4.8 on WordPress. Affected is the function add_listing_action. Performing manipulation results in path traversal.
This vulnerability was named CVE-2025-10488. The attack may be initiated remotely. There is no available exploit.