A vulnerability has been found in GeoDirectory Plugin up to 2.8.167 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component User-Search Handler. Performing a manipulation results in information disclosure.

This vulnerability is reported as CVE-2026-16968. The attack is possible to be carried out remotely. No exploit exists.

The affected component should be upgraded.