| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2020-36853 | 10WebMapBuilder <= 1.0.63 - Unauthenticated Stored Cross-Site Scripting via Plugin Settings Change | 10web | 10Web Map Builder for Google Maps | High | 7.2 | 2025-10-18 03:33:24 | Deep Dive |
| CVE-2025-11166 | WP Go Maps (formerly WP Google Maps) <= 9.0.46 - Cross-Site Request Forgery to Plugin Settings Update | wpgmaps | WP Go Maps (formerly WP Google Maps) | Medium | 5.4 | 2025-10-09 01:48:48 | Deep Dive |
| CVE-2025-9206 | Meks Easy Maps <= 2.1.4 - Authenticated (Contributor+) Stored Cross-Site Scripting | mekshq | Meks Easy Maps | Medium | 6.4 | 2025-10-03 11:17:15 | Deep Dive |
| CVE-2025-8608 | Mihdan: Elementor Yandex Maps <= 1.6.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via Marker Pins | mihdan | Maps from Yandex for Elementor | Medium | 6.4 | 2025-09-30 03:35:32 | Deep Dive |
| CVE-2025-9044 | Mapster WP Maps <= 1.20.0 - Authenticated (Contributor+) Stored Cross-Site Scripting | mapster | Mapster WP Maps | Medium | 6.4 | 2025-09-26 03:25:35 | Deep Dive |
| CVE-2025-57952 | WordPress Maps for WP Plugin <= 1.2.5 - Cross Site Scripting (XSS) Vulnerability | icopydoc | Maps for WP | Medium | 5.9 | 2025-09-22 18:24:51 | Deep Dive |
| CVE-2025-9352 | Pronamic Google Maps <= 2.4.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | pronamic | Pronamic Google Maps | Medium | 5.4 | 2025-08-28 01:46:29 | Deep Dive |
| CVE-2025-6089 | Astun Technology iShare Maps atCheckJS.aspx redirect | Astun Technology | iShare Maps | Medium | 4.3 | 2025-06-15 13:00:15 | Deep Dive |
| CVE-2025-30930 | WordPress ACF: Yandex Maps Field plugin <= 1.1 - Cross Site Scripting (XSS) Vulnerability | Unreal Themes | ACF: Yandex Maps Field | Medium | 5.9 | 2025-06-06 12:54:19 | Deep Dive |
| CVE-2025-5378 | Astun Technology iShare Maps mycouncil2.aspx cross site scripting | Astun Technology | iShare Maps | Medium | 4.3 | 2025-05-31 13:00:07 | Deep Dive |
| CVE-2025-5377 | Astun Technology iShare Maps historic1.asp cross site scripting | Astun Technology | iShare Maps | Medium | 4.3 | 2025-05-31 12:31:04 | Deep Dive |
| CVE-2024-8620 | MapPress Maps for WordPress < 2.93 - Admin+ Stored XSS via Map Settings | Unknown | MapPress Maps for WordPress | - | - | 2025-05-15 20:07:17 | Deep Dive |
| CVE-2025-3504 | WP Maps < 4.7.2 - Admin+ Stored XSS | Unknown | WP Maps | - | - | 2025-05-01 06:00:05 | Deep Dive |
| CVE-2025-3502 | WP Maps < 4.7.2 - Admin+ Stored XSS | Unknown | WP Maps | - | - | 2025-05-01 06:00:04 | Deep Dive |
| CVE-2025-3503 | WP Maps < 4.7.2 - Admin+ Stored XSS | Unknown | WP Maps | - | - | 2025-05-01 06:00:04 | Deep Dive |
| CVE-2025-2162 | MapPress Maps for WordPress < 2.94.10 - Admin+ Stored XSS | Unknown | MapPress Maps for WordPress | 中危 | - | 2025-04-18 06:00:08 | Deep Dive |
| CVE-2025-27313 | WordPress Google Maps GPX Viewer Plugin <= 3.6 - Reflected Cross Site Scripting (XSS) vulnerability | Bernd Altmeier | Google Maps GPX Viewer | High | 7.1 | 2025-04-17 15:48:00 | Deep Dive |
| CVE-2025-39424 | WordPress Simple Maps plugin <= 0.98 - CSRF to XSS vulnerability | simplemaps | Simple Maps | High | 7.1 | 2025-04-17 15:17:05 | Deep Dive |
| CVE-2025-3737 | Google Maps: Store Locator - Critical - Unsupported - SA-CONTRIB-2025-038 | Drupal | Google Maps: Store Locator | - | - | 2025-04-16 16:32:22 | Deep Dive |
| CVE-2025-32525 | WordPress Interactive Geo Maps plugin <= 1.6.24 - Reflected Cross Site Scripting (XSS) vulnerability | MapGeo | Interactive Geo Maps | High | 7.1 | 2025-04-11 08:42:54 | Deep Dive |