This page lists publicly disclosed CVE vulnerabilities affecting 10web map_builder_for_google_maps (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2023-45272 | Missing Authorization vulnerability in 10Web 10Web Map Builder for Google Maps allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects 10Web Map Builder for Google Maps: from n/a through 1.0.73. | [email protected] | 5.4 | 0.28% | 2025-01-02 | 2026-06-17 |
| CVE-2024-31116 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in 10Web 10Web Map Builder for Google Maps.This issue affects 10Web Map Builder for Google Maps: from n/a through 1.0.74. | [email protected] | 7.6 | 0.54% | 2024-03-31 | 2026-06-17 |
| CVE-2023-0037 | The 10Web Map Builder for Google Maps WordPress plugin before 1.0.73 does not properly sanitise and escape some parameters before using them in an SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection | [email protected] | 9.8 | 3.91% | 2023-03-13 | 2026-06-17 |
| CVE-2022-4758 | The 10WebMapBuilder WordPress plugin before 1.0.72 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins. | [email protected] | 5.4 | 0.47% | 2023-01-23 | 2026-06-17 |