Vulnerabilities in wpgmaps
13 resultsCVE-2023-6697MEDIUMWP Go Maps (formerly WP Google Maps) <= 9.0.28 - Reflected Cross-Site ScriptingEPSS 1.0%CVE-2023-6777MEDIUMWP Go Maps (formerly WP Google Maps) <= 9.0.34 - Information Exposure to Potential Denial of ServiceEPSS 0.8%CVE-2024-29931HIGHWordPress WP Go Maps plugin <= 9.0.29 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.8%CVE-2024-5994MEDIUMWP Go Maps (formerly WP Google Maps) <= 9.0.38 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.4%CVE-2023-4839MEDIUMWP Go Maps <= 9.0.32 - Authenticated (Administrator+) Stored Cross-Site ScriptingEPSS 0.3%CVE-2024-3557MEDIUMWP Go Maps (formerly WP Google Maps) <= 9.0.36 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeEPSS 0.3%CVE-2024-1582MEDIUMWP Go Maps (formerly WP Google Maps) <= 9.0.32 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeEPSS 0.3%CVE-2026-0593MEDIUMWP Go Maps (formerly WP Google Maps) <= 10.0.04 - Missing Authorization to Authenticated (Subscriber+) Map Engine Setting ModificationEPSS 0.2%CVE-2025-11703MEDIUMWP Go Maps (formerly WP Google Maps) <= 9.0.48 - Unauthenticated Cache PoisoningEPSS 0.2%CVE-2026-12238MEDIUMWP Go Maps <= 10.1.01 - Unauthenticated Arbitrary Record CreationEPSS 0.2%CVE-2025-11166MEDIUMWP Go Maps (formerly WP Google Maps) <= 9.0.46 - Cross-Site Request Forgery to Plugin Settings UpdateEPSS 0.2%CVE-2025-24742MEDIUMWordPress WP Google Maps plugin <= 9.0.40 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2026-4268MEDIUMWP Go Maps (formerly WP Google Maps) <= 10.0.05 - Missing Authorization to Authenticated (Subscriber+) Stored Cross-Site Scripting via admin_post_wpgmza_save_settingsEPSS 0.2%