CVE-2026-39566: Designinvento Directorypress
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Designinvento DirectoryPress directorypress allows Retrieve Embedded Sensitive Data.This issue affects DirectoryPress: from n/a through <= 3.6.26.
Affected products
- Designinvento Directorypress: up to and including 3.6.26
Published 2026-04-08. Last modified 2026-07-24.