The Directorist plugin for WordPress is a computer program which has a vulnerability in versions up to 7.7.1. This vulnerability makes it possible for people with editor-level or higher access to embed untrusted input into files that can be exported as a CSV (comma-separated value). This can be a problem if someone downloads and opens the file on a system that is not set up properly and could lead to code being executed.