CVE-2025-27278
WordPress AcuGIS Leaflet Maps Plugin <= 5.1.1.0 - Multiple Cross Site Scripting (XSS) vulnerabilities
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David Ghedini AcuGIS Leaflet Maps mapfig-premium-leaflet-map-maker allows Reflected XSS.This issue affects AcuGIS Leaflet Maps: from n/a through <= 5.1.1.0.
| CWE | CWE-79 |
| Vendor | david ghedini |
| Product | acugis leaflet maps |
| Published | Mar 3, 2025 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for david ghedini acugis leaflet maps
Be the first to know when new unknown vulnerabilities affecting david ghedini acugis leaflet maps are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
David Ghedini / AcuGIS Leaflet Maps
0 โค 5.1.1.0
References
Credits
johska | Patchstack Bug Bounty Program