CVE Browser

More filters (active)
CVE-2024-13628 MEDIUM

WP Pricing Table <= 1.1 - Reflected XSS

CVSS 6.1 EPSS 0.65% Feb 26, 2025
CVE-2025-24742 HIGH

WordPress WP Google Maps plugin <= 9.0.40 - Cross Site Request Forgery (CSRF) vulnerability

CVSS 8.8 EPSS 0.19% Jan 27, 2025
CVE-2024-9127 MEDIUM

Super Testimonials <= 3.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via alignment Parameter

CVSS 6.4 EPSS 0.35% Sep 26, 2024
CVE-2024-5994 MEDIUM

WP Go Maps (formerly WP Google Maps) <= 9.0.38 - Authenticated (Contributor+) Stored Cross-Site Scripting

CVSS 6.4 EPSS 0.37% Jun 14, 2024
CVE-2024-3557 MEDIUM

WP Go Maps (formerly WP Google Maps) <= 9.0.36 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode

CVSS 6.4 EPSS 0.32% May 24, 2024
CVE-2023-6777 MEDIUM

WP Go Maps (formerly WP Google Maps) <= 9.0.34 - Information Exposure to Potential Denial of Service

CVSS 6.5 EPSS 0.80% Apr 9, 2024
CVE-2024-29931 HIGH

WordPress WP Go Maps plugin <= 9.0.29 - Reflected Cross Site Scripting (XSS) vulnerability

CVSS 7.1 EPSS 0.75% Mar 27, 2024
CVE-2024-1582 MEDIUM

WP Go Maps (formerly WP Google Maps) <= 9.0.32 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode

CVSS 6.4 EPSS 0.32% Mar 13, 2024
CVE-2023-4839 MEDIUM

WP Go Maps <= 9.0.32 - Authenticated (Administrator+) Stored Cross-Site Scripting

CVSS 4.8 EPSS 0.34% Mar 13, 2024
CVE-2023-6627 MEDIUM

WP Go Maps < 9.0.28 - Unauthenticated Stored XSS

CVSS 6.1 EPSS 0.62% Jan 8, 2024
CVE-2022-47595 MEDIUM

WordPress WP Google Maps Plugin <= 9.0.15 is vulnerable to Path Traversal

CVSS 6.5 EPSS 0.75% Mar 14, 2023
CVE-2021-36871 MEDIUM

WordPress WP Google Maps Pro premium plugin <= 8.1.11 - Multiple Authenticated Persistent XSS vulnerabilities

CVSS 5.5 EPSS 0.56% Sep 9, 2021
CVE-2021-36870 MEDIUM

WordPress WP Google Maps plugin <= 8.1.12 - Multiple Authenticated Persistent XSS vulnerabilities

CVSS 5.5 EPSS 0.58% Sep 9, 2021
CVE-2021-24383 MEDIUM

WP Google Maps < 8.1.12 - Authenticated Stored Cross-Site Scripting (XSS)

CVSS 5.4 EPSS 2.47% Jun 21, 2021
CVE-2019-14792 MEDIUM

The WP Google Maps plugin before 7.11.35 for WordPress allows XSS via the wp-admin/ rectangle_name or rectangle_opacity parameter.

CVSS 5.4 EPSS 1.06% Aug 9, 2019
CVE-2019-10692 CRITICAL

In the wp-google-maps plugin before 7.11.18 for WordPress, includes/class.rest-api.php in the REST API does not sanitize field names before a SELECT statement.

CVSS 9.8 EPSS 78.70% Apr 2, 2019
CVE-2019-9912 MEDIUM

The wp-google-maps plugin before 7.10.43 for WordPress has XSS via the wp-admin/admin.php PATH_INFO.

CVSS 6.1 EPSS 3.15% Mar 21, 2019
CVE-2017-2187 MEDIUM

Cross-site scripting vulnerability in WP Live Chat Support prior to version 7.0.07 allows remote attackers to inject arbitrary web script or HTML via unspecifi…

CVSS 6.1 EPSS 1.29% Jun 9, 2017
CVE-2014-7182 MEDIUM

Multiple cross-site scripting (XSS) vulnerabilities in the WP Google Maps plugin before 6.0.27 for WordPress allow remote attackers to inject arbitrary web scr…

CVSS 4.3 EPSS 2.46% Oct 22, 2014

Showing 1 to 19 CVEs · page 1