weplugins records
13 published records for vendor weplugins.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 38.5%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')7
- CWE-352 Cross-Site Request Forgery (CSRF)5
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
13 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2015-9309No exploit | The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit category feature.weplugins · wp maps · CWE-352 | High8.8 | — | 0.7% | Aug 14, 2019 |
35Monitor | CVE-2015-9307No exploit | The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit location feature.weplugins · wp maps · CWE-352 | High8.8 | — | 0.7% | Aug 14, 2019 |
35Monitor | CVE-2015-9308No exploit | The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit map feature.weplugins · wp maps · CWE-352 | High8.8 | — | 0.7% | Aug 14, 2019 |
35Monitor | CVE-2022-25600No exploit | WordPress WP Google Map plugin <= 4.2.3 - Cross-Site Request Forgery (CSRF) vulnerabilityweplugins · wp maps · CWE-352 | High8.8 | — | 0.6% | Mar 11, 2022 |
35Monitor | CVE-2023-28172No exploit | WordPress WP Google Map Plugin Plugin <= 4.4.2 is vulnerable to Cross Site Request Forgery (CSRF)weplugins · wp maps · CWE-352 | High8.8 | — | 0.3% | Nov 12, 2023 |
28Monitor | CVE-2021-24130No exploit | WP Google Map Plugin < 4.1.5 - Authenticated SQL Injectionweplugins · wp maps · CWE-89 | High7.2 | — | 1.4% | Mar 18, 2021 |
24Monitor | CVE-2015-9305No exploit | The wp-google-map-plugin plugin before 2.3.7 for WordPress has XSS related to the add_query_arg() and remove_query_arg() functions.weplugins · wp maps · CWE-79 | Medium6.1 | — | 1.0% | Aug 12, 2019 |
24Monitor | CVE-2016-10878No exploit | The wp-google-map-plugin plugin before 3.1.2 for WordPress has XSS.weplugins · wp maps · CWE-79 | Medium6.1 | — | 1.0% | Aug 12, 2019 |
21Monitor | CVE-2023-23878No exploit | WordPress WP Google Map Plugin Plugin <= 4.3.9 is vulnerable to Cross Site Scripting (XSS)weplugins · wp maps · CWE-79 | Medium5.4 | — | 0.4% | Apr 4, 2023 |
19Monitor | CVE-2021-24502No exploit | WP Google Map < 1.7.7 - Authenticated Stored Cross-Site Scripting (XSS)weplugins · wp maps · CWE-79 | Medium4.8 | — | 0.7% | Aug 9, 2021 |
19Monitor | CVE-2025-3502No exploit | WP Maps < 4.7.2 - Admin+ Stored XSSweplugins · wp maps · CWE-79 | Medium4.8 | — | 0.3% | May 1, 2025 |
19Monitor | CVE-2025-3503No exploit | WP Maps < 4.7.2 - Admin+ Stored XSSweplugins · wp maps · CWE-79 | Medium4.8 | — | 0.3% | May 1, 2025 |
19Monitor | CVE-2025-3504No exploit | WP Maps < 4.7.2 - Admin+ Stored XSSweplugins · wp maps · CWE-79 | Medium4.8 | — | 0.3% | May 1, 2025 |
- CVE-2015-930935Monitor
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit category feature.
HighCVSS 8.8No exploitEPSS 1%weplugins · wp mapsAug 14, 2019
- CVE-2015-930735Monitor
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit location feature.
HighCVSS 8.8No exploitEPSS 1%weplugins · wp mapsAug 14, 2019
- CVE-2015-930835Monitor
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit map feature.
HighCVSS 8.8No exploitEPSS 1%weplugins · wp mapsAug 14, 2019
- CVE-2022-2560035Monitor
WordPress WP Google Map plugin <= 4.2.3 - Cross-Site Request Forgery (CSRF) vulnerability
HighCVSS 8.8No exploitEPSS 1%weplugins · wp mapsMar 11, 2022
- CVE-2023-2817235Monitor
WordPress WP Google Map Plugin Plugin <= 4.4.2 is vulnerable to Cross Site Request Forgery (CSRF)
HighCVSS 8.8No exploitEPSS 0%weplugins · wp mapsNov 12, 2023
- CVE-2021-2413028Monitor
WP Google Map Plugin < 4.1.5 - Authenticated SQL Injection
HighCVSS 7.2No exploitEPSS 1%weplugins · wp mapsMar 18, 2021
- CVE-2015-930524Monitor
The wp-google-map-plugin plugin before 2.3.7 for WordPress has XSS related to the add_query_arg() and remove_query_arg() functions.
MediumCVSS 6.1No exploitEPSS 1%weplugins · wp mapsAug 12, 2019
- CVE-2016-1087824Monitor
The wp-google-map-plugin plugin before 3.1.2 for WordPress has XSS.
MediumCVSS 6.1No exploitEPSS 1%weplugins · wp mapsAug 12, 2019
- CVE-2023-2387821Monitor
WordPress WP Google Map Plugin Plugin <= 4.3.9 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%weplugins · wp mapsApr 4, 2023
- CVE-2021-2450219Monitor
WP Google Map < 1.7.7 - Authenticated Stored Cross-Site Scripting (XSS)
MediumCVSS 4.8No exploitEPSS 1%weplugins · wp mapsAug 9, 2021
- CVE-2025-350219Monitor
WP Maps < 4.7.2 - Admin+ Stored XSS
MediumCVSS 4.8No exploitEPSS 0%weplugins · wp mapsMay 1, 2025
- CVE-2025-350319Monitor
WP Maps < 4.7.2 - Admin+ Stored XSS
MediumCVSS 4.8No exploitEPSS 0%weplugins · wp mapsMay 1, 2025
- CVE-2025-350419Monitor
WP Maps < 4.7.2 - Admin+ Stored XSS
MediumCVSS 4.8No exploitEPSS 0%weplugins · wp mapsMay 1, 2025