Pricing
Case studies
Login
Start trial
WP Go Maps
WPGMaps
Developer
10.0.06
Latest version
300,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
26 patched
5 Mitigation rules
Missing Authorization to Authenticated (Subscriber+) Stored Cross-Site Scripting via admin_post_wpgmza_save_settings vulnerability
<= 10.0.05
18/03/2026
Missing Authorization to Authenticated (Subscriber+) Map Engine Setting Modification vulnerability
<= 10.0.04
27/01/2026
Unauthenticated Stored Cross-Site Scripting vulnerability
<= 9.0.47
17/11/2025
Unauthenticated Cache Poisoning vulnerability
<= 9.0.48
18/10/2025
Cross-Site Request Forgery to Plugin Settings Update vulnerability
<= 9.0.46
08/10/2025
Cross Site Request Forgery (CSRF) vulnerability
<= 9.0.40
24/01/2025
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 9.0.38
14/06/2024
Authenticated Stored Cross-Site Scripting vulnerability
<= 9.0.38
13/06/2024
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 9.0.36
24/05/2024
Information Exposure to Potential Denial of Service vulnerability
<= 9.0.34
11/04/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 9.0.29
25/03/2024
Authenticated (Administrator+) Stored Cross-Site Scripting vulnerability
<= 9.0.32
12/03/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode vulnerability
<= 9.0.32
12/03/2024
Reflected Cross-Site Scripting vulnerability
<= 9.0.28
24/01/2024
Unauthenticated Stored XSS vulnerability
< 9.0.28
18/12/2023
Directory Traversal
<= 9.0.15
20/01/2023
Multiple Authenticated Persistent Cross-Site Scripting (XSS) vulnerabilities
<= 8.1.12
15/06/2021
Authenticated Stored Cross-Site Scripting (XSS) vulnerability
<= 8.1.11
07/06/2021
Cross-Site Request Forgery (CSRF) vulnerability
<= 7.11.34
10/07/2019
Cross-Site Request Forgery (CSRF) vulnerability
<= 7.11.27
16/06/2019
Unauthenticated SQL Injection (SQLi) vulnerability
<= 7.11.17
02/04/2019
Cross-Site Scripting (XSS) vulnerability
<= 7.10.41
22/03/2019
Reflected Cross-Site Scripting (XSS) vulnerability
<= 7.10.41
12/03/2019
Cross Site Scripting (XSS)
<= 2.1.3
15/08/2016
Cross Site Scripting
<= 2.3.9
20/08/2015
Multiple XSS
<= 6.0.26
25/09/2014