Skip to content
Noroxi

codecabin records

18 published records for vendor codecabin.

All records

18 records
  • CVE-2019-10692
    63This week

    In the wp-google-maps plugin before 7.11.18 for WordPress, includes/class.rest-api.php in the REST API does not sanitize field names before

    CriticalCVSS 9.8WeaponizedEPSS 79%

    codecabin · wp go mapsApr 2, 2019

  • WordPress WP Google Maps plugin <= 9.0.40 - Cross Site Request Forgery (CSRF) vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    codecabin · wp go mapsJan 27, 2025

  • CVE-2023-6777
    26Monitor

    WP Go Maps (formerly WP Google Maps) <= 9.0.34 - Information Exposure to Potential Denial of Service

    MediumCVSS 6.5No exploitEPSS 1%

    codecabin · wp go mapsApr 9, 2024

  • WordPress WP Google Maps Plugin <= 9.0.15 is vulnerable to Path Traversal

    MediumCVSS 6.5No exploitEPSS 1%

    codecabin · wp go mapsMar 14, 2023

  • CVE-2019-9912
    25Monitor

    The wp-google-maps plugin before 7.10.43 for WordPress has XSS via the wp-admin/admin.php PATH_INFO.

    MediumCVSS 6.1Proof of conceptEPSS 3%

    codecabin · wp go mapsMar 21, 2019

  • WordPress WP Go Maps plugin <= 9.0.29 - Reflected Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.1Proof of conceptEPSS 1%

    codecabin · wp go mapsMar 27, 2024

  • WP Pricing Table <= 1.1 - Reflected XSS

    MediumCVSS 6.1Proof of conceptEPSS 1%

    codecabin · wp pricing tableFeb 26, 2025

  • CVE-2023-6627
    24Monitor

    WP Go Maps < 9.0.28 - Unauthenticated Stored XSS

    MediumCVSS 6.1No exploitEPSS 1%

    codecabin · wp go mapsJan 8, 2024

  • WP Google Maps < 8.1.12 - Authenticated Stored Cross-Site Scripting (XSS)

    MediumCVSS 5.4Proof of conceptEPSS 2%

    codecabin · wp go mapsJun 21, 2021

  • The WP Google Maps plugin before 7.11.35 for WordPress allows XSS via the wp-admin/ rectangle_name or rectangle_opacity parameter.

    MediumCVSS 5.4No exploitEPSS 1%

    codecabin · wp go mapsAug 9, 2019

  • WordPress WP Google Maps plugin <= 8.1.12 - Multiple Authenticated Persistent XSS vulnerabilities

    MediumCVSS 5.4No exploitEPSS 1%

    codecabin · wp go mapsSep 9, 2021

  • WordPress WP Google Maps Pro premium plugin <= 8.1.11 - Multiple Authenticated Persistent XSS vulnerabilities

    MediumCVSS 5.4No exploitEPSS 1%

    codecabin · wp go mapsSep 9, 2021

  • CVE-2024-5994
    21Monitor

    WP Go Maps (formerly WP Google Maps) <= 9.0.38 - Authenticated (Contributor+) Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 0%

    codecabin · wp go mapsJun 14, 2024

  • CVE-2024-9127
    21Monitor

    Super Testimonials <= 3.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via alignment Parameter

    MediumCVSS 5.4No exploitEPSS 0%

    codecabin · super testimonialsSep 26, 2024

  • CVE-2024-3557
    21Monitor

    WP Go Maps (formerly WP Google Maps) <= 9.0.36 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode

    MediumCVSS 5.4No exploitEPSS 0%

    codecabin · wp go mapsMay 24, 2024

  • CVE-2024-1582
    21Monitor

    WP Go Maps (formerly WP Google Maps) <= 9.0.32 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode

    MediumCVSS 5.4No exploitEPSS 0%

    codecabin · wp go mapsMar 12, 2024

  • CVE-2023-4839
    19Monitor

    WP Go Maps <= 9.0.32 - Authenticated (Administrator+) Stored Cross-Site Scripting

    MediumCVSS 4.8No exploitEPSS 0%

    codecabin · wp go mapsMar 12, 2024

  • CVE-2014-7182
    18Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in the WP Google Maps plugin before 6.0.27 for WordPress allow remote attackers to injec

    MediumCVSS 4.3No exploitEPSS 2%

    codecabin · wp go mapsOct 22, 2014