CVE-2026-59518: Wpwax Directorist

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Deserialization of Untrusted Data vulnerability in wpWax Directorist directorist allows Object Injection.This issue affects Directorist: from n/a through <= 8.8.2.

Affected products

  • Wpwax Directorist: up to and including 8.8.2

Published 2026-07-13. Last modified 2026-07-13.