Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

MapSVG — Vulnerabilities & Security Advisories 22

All 22 CVE vulnerabilities found in MapSVG, with AI-generated Chinese analysis, references, and POCs.

This page serves as a comprehensive vulnerability aggregation resource for MapSVG, a vector map library developed by the vendor MapSVG, specifically cataloging weaknesses under the Common Weakness Enumeration (CWE) taxonomy. It collects a wide spectrum of security flaws discovered in MapSVG software, ranging from critical remote code execution risks to less severe information disclosure and cross-site scripting vulnerabilities, covering the entire historical timeline of publicly disclosed issues since the product's initial release. By utilizing this aggregated data, security professionals and developers can effectively track a vendor's advisory patterns to gauge responsiveness and transparency, gain a deeper understanding of prevalent weakness classes associated with similar web-based mapping tools, and thoroughly review a specific product's vulnerability history to assess long-term security stability and maintenance practices. The interface is designed to facilitate efficient analysis of threat landscapes, allowing users to filter entries by severity, publication date, or specific vulnerability types to identify potential risks in their own deployments. This structured approach ensures that stakeholders have immediate access to critical intelligence regarding known exploits and patch requirements, thereby supporting informed decision-making during software procurement, auditing, and ongoing security hygiene operations without the need for extensive manual research across disparate sources.

Vendor: Unknown

CVE ID Title CVSS Severity Published
CVE-2026-59527 WordPress MapSVG plugin <= 8.14.0 - SQL Injection vulnerability CWE-89 9.3 Critical 2026-07-27
CVE-2026-65455 WordPress MapSVG plugin <= 8.14.0 - Arbitrary File Upload vulnerability CWE-434 9.1 Critical 2026-07-23
CVE-2026-65451 WordPress MapSVG plugin <= 8.14.0 - SQL Injection vulnerability CWE-89 8.5 High 2026-07-23
CVE-2026-65450 WordPress MapSVG plugin <= 8.14.0 - SQL Injection vulnerability CWE-89 8.5 High 2026-07-23
CVE-2026-65449 WordPress MapSVG plugin <= 8.14.0 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium 2026-07-23
CVE-2026-59526 WordPress MapSVG plugin <= 8.14.0 - SQL Injection vulnerability CWE-89 9.3 Critical 2026-07-23
CVE-2025-68562 WordPress MapSVG plugin <= 8.7.3 - Arbitrary File Upload vulnerability CWE-434 9.9 Critical 2025-12-29
CVE-2025-54748 WordPress MapSVG Plugin < 8.6.12 - Arbitrary File Download Vulnerability CWE-22 6.5 Medium 2025-12-18
CVE-2025-62930 WordPress MapSVG plugin <= 8.7.22 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium 2025-10-27
CVE-2025-54669 WordPress MapSVG Plugin < 8.7.4 - SQL Injection Vulnerability CWE-89 9.3 Critical 2025-08-14
CVE-2025-47559 WordPress MapSVG plugin < 8.7.4 - Arbitrary File Upload vulnerability CWE-434 9.9 Critical 2025-06-17
CVE-2025-47561 WordPress MapSVG plugin < 8.6.13 - Privilege Escalation Vulnerability CWE-266 8.8 High 2025-06-09
CVE-2025-47558 WordPress MapSVG plugin < 8.6.13 - Broken Access Control vulnerability CWE-862 7.5 High 2025-05-23
CVE-2024-9544 MapSVG - All Kinds of Maps and Store Locator for WordPress <= 8.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-434 6.4 Medium 2025-05-22
CVE-2025-47557 WordPress MapSVG plugin <= 8.5.31 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium 2025-05-16
CVE-2025-47560 WordPress MapSVG plugin < 8.6.13 - Broken Access Control Vulnerability CWE-862 5.0 Medium 2025-05-16
CVE-2025-47562 WordPress MapSVG plugin <= 8.5.34 - Content Injection Vulnerability CWE-94 5.3 Medium 2025-05-16
CVE-2025-48120 WordPress MapSVG Lite plugin <= 8.6.9 - Arbitrary Shortcode Execution vulnerability CWE-94 5.3 Medium 2025-05-16
CVE-2025-32682 WordPress MapSVG Lite plugin <= 8.6.4 - Arbitrary File Upload Vulnerability CWE-434 9.9 Critical 2025-04-17
CVE-2025-32684 WordPress MapSVG Lite plugin <= 8.6.4 - Broken Access Control Vulnerability CWE-862 5.0 Medium 2025-04-09
CVE-2025-32683 WordPress MapSVG Lite plugin <= 8.6.6 - Cross Site Scripting (XSS) Vulnerability CWE-79 6.5 Medium 2025-04-09
CVE-2022-0592 MapSVG < 6.2.20 - Unauthenticated SQLi CWE-89 9.8 - 2022-05-09

All 22 known CVE vulnerabilities affecting MapSVG with full Chinese analysis, references, and POCs where available.