Hi @alamin56649,
Thank you for the fix! Although you mentioned that the issue is resolved in version 8.6, pathstack has still flagged this new version as vulnerable to a medium priority Broken Access Control. Kindly check this link. Thank you!
https://patchstack.com/database/wordpress/plugin/directorist/vulnerability/wordpress-directorist-plugin-8-5-6-broken-access-control-vulnerability