wpgmaps 厂商相关 12 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。
该 WordPress 插件主要用于在网站中嵌入交互式地图功能。历史上存在多种安全漏洞,包括跨站脚本(XSS)、远程代码执行(RCE)、SQL注入和权限绕过等问题。截至最新统计,该插件已记录12个CVE漏洞,多数源于输入验证不足和权限控制缺陷。安全研究人员曾多次发现其存在高危漏洞,可能导致网站被完全控制。建议用户及时更新至最新版本并实施最小权限原则以降低风险。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2026-4268 | WordPress plugin WP Go Maps 跨站脚本漏洞 — WP Go Maps (formerly WP Google Maps)CWE-79 | 6.4 | Medium | 2026-03-18 |
| CVE-2026-0593 | WordPress plugin WP Go Maps 安全漏洞 — WP Go Maps (formerly WP Google Maps)CWE-862 | 5.3 | Medium | 2026-01-24 |
| CVE-2025-11703 | WordPress plugin WP Go Maps 安全漏洞 — WP Go Maps (formerly WP Google Maps)CWE-349 | 5.3 | Medium | 2025-10-18 |
| CVE-2025-11166 | WordPress plugin WP Go Maps 跨站请求伪造漏洞 — WP Go Maps (formerly WP Google Maps)CWE-352 | 5.4 | Medium | 2025-10-09 |
| CVE-2025-24742 | WordPress plugin WP Go Maps 跨站请求伪造漏洞 — WP Go MapsCWE-352 | 4.3 | Medium | 2025-01-27 |
| CVE-2024-5994 | WordPress plugin WP Go Maps 安全漏洞 — WP Go Maps (formerly WP Google Maps)CWE-79 | 6.4 | Medium | 2024-06-14 |
| CVE-2024-3557 | WordPress plugin WP Go Maps 安全漏洞 — WP Go Maps (formerly WP Google Maps)CWE-79 | 6.4 | Medium | 2024-05-24 |
| CVE-2023-6777 | WordPress Plugin WP Go Maps 安全漏洞 — WP Go Maps (formerly WP Google Maps)CWE-200 | 5.3 | Medium | 2024-04-09 |
| CVE-2024-29931 | WordPress Plugin WP Go Maps 跨站脚本漏洞 — WP Go MapsCWE-79 | 7.1 | High | 2024-03-27 |
| CVE-2024-1582 | WordPress Plugin WP Go Maps 安全漏洞 — WP Go Maps (formerly WP Google Maps)CWE-79 | 6.4 | Medium | 2024-03-13 |
| CVE-2023-4839 | WordPress Plugin WP Go Maps 安全漏洞 — WP Go Maps (formerly WP Google Maps)CWE-79 | 4.4 | Medium | 2024-03-13 |
| CVE-2023-6697 | WordPress Plugin WP Go Maps 跨站脚本漏洞 — WP Go Maps (formerly WP Google Maps)CWE-79 | 6.1 | Medium | 2024-01-24 |
本页汇总了 wpgmaps 厂商截至目前公开的全部 12 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。