supsystic Easy Google Maps是supsystic公司开源的一款轻松嵌入地图的网站插件。 supsystic Easy Google Maps 1.13.0及之前版本存在反序列化注入漏洞,该漏洞源于输入反序列化处理不当,可能导致未经身份验证的攻击者利用PHP对象注入攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| supsystic | Easy Google Maps | n/a≤ 1.13.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| supsystic | Easy Google Maps | n/a ~ 1.13.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-73376 | 9.8 CRITICAL | WordPress Ultimate Maps by Supsystic plugin < 1.5.0 - PHP Object Injection vulnerability |
| CVE-2026-73380 | 9.8 CRITICAL | WordPress Popup by Supsystic plugin <= 1.13.0 - PHP Object Injection vulnerability |
| CVE-2026-73381 | 9.1 CRITICAL | WordPress Popup by Supsystic plugin <= 1.13.0 - Broken Authentication vulnerability |
| CVE-2026-73377 | 7.5 HIGH | WordPress Ultimate Maps by Supsystic plugin < 1.5.0 - Broken Access Control vulnerability |
| CVE-2026-73367 | 7.2 HIGH | WordPress Easy Google Maps plugin < 1.14.2 - Remote File Inclusion vulnerability |
| CVE-2026-73375 | 7.1 HIGH | WordPress Ultimate Maps by Supsystic plugin < 1.5.0 - Cross Site Scripting (XSS) vulnerabi |
| CVE-2026-73378 | 7.1 HIGH | WordPress Contact Form by Supsystic plugin < 1.10.0 - Cross Site Scripting (XSS) vulnerabi |
| CVE-2026-73379 | 6.5 MEDIUM | WordPress Contact Form by Supsystic plugin < 1.10.0 - Bypass Vulnerability vulnerability |
No comments yet