CVE-2026-15381
WP Go Maps < 10.1.04 - Unauthenticated SQL Injection via Markers REST filter
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The WP Go Maps WordPress plugin before 10.1.04 does not properly sanitise and escape a parameter before using it in a SQL query, allowing unauthenticated users to perform SQL injection attacks.
| Vendor | unknown |
| Product | wp go maps |
| Published | Jul 31, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown wp go maps
Be the first to know when new unknown vulnerabilities affecting unknown wp go maps are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / WP Go Maps
0 < 10.1.04
References
Credits
Jakub Herman WPScan