MapSVG

Information

Software Type Plugin
Software Slug mapsvg
Software Status Active
Software Author MapSVG
Software Website mapsvg.com
Software Record Last Updated October 9, 2024

12 Vulnerabilities

Title Status CVE ID CVSS Researchers Date
MapSVG <= 8.14.0 - Unauthenticated SQL Injection Patched CVE-2026-59526 7.5 Trương Hữu Phúc (truonghuuphuc) July 23, 2026
MapSVG <= 8.14.0 - Authenticated (Contributor+) SQL Injection Patched CVE-2026-65451 6.5 Trương Hữu Phúc (truonghuuphuc) July 22, 2026
MapSVG < 8.7.4 - Unauthenticated SQL Injection Patched CVE-2025-54669 7.5 Trương Hữu Phúc (truonghuuphuc) August 8, 2025
MapSVG < 8.6.12 - Authenticated (Contributor+) Arbitrary File Download Patched CVE-2025-54748 4.3 Nguyễn Trung Kiên July 31, 2025
MapSVG < 8.7.4 - Authenticated (Contributor+) Arbitrary File Upload Patched CVE-2025-47559 8.8 Nguyễn Trung Kiên June 12, 2025
MapSVG < 8.6.13 - Authenticated (Contributor+) Privilege Esclation Patched CVE-2025-47561 8.8 Nguyễn Trung Kiên June 9, 2025
MapSVG <= 8.6.13 - Missing Authorization Patched CVE-2025-47558 5.3 Nguyễn Trung Kiên May 22, 2025
MapSVG - All Kinds of Maps and Store Locator for WordPress <= 8.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting Unpatched CVE-2024-9544 6.4 Mo'men Saad May 21, 2025
MapSVG <= 8.5.31 - Authenticated (Contributor+) Stored Cross-Site Scripting Patched CVE-2025-47557 6.4 Nguyễn Trung Kiên May 16, 2025
MapSVG < 8.6.13 - Missing Authorization Patched CVE-2025-47560 4.3 Nguyễn Trung Kiên May 16, 2025
MapSVG <= 8.5.34 - Unauthenticated Arbitrary Shortcode Execution Patched CVE-2025-47562 6.5 Nguyễn Trung Kiên May 16, 2025
MapSVG <= 6.2.19 - SQL Injection Patched CVE-2022-0592 7.3 Brandon James Roldan (tomorrowisnew) April 18, 2022

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation