WP Go Maps (formerly WP Google Maps) plugin for WordPress versions before 9.0.30 is vulnerable to Reflected Cross-Site Scripting via the 'map_id' parameter in the admin map edit page.
id: CVE-2024-29931
info:
name: WP Go Maps <= 9.0.29 - Cross-Site Scripting
author: Shivam Kambo
...