plugin

Cf7 Google Map Vulnerabilities

1 known security issue reported for the Cf7 Google Map WordPress plugin. Most recent disclosed May 3, 2023.

1 high

Running Cf7 Google Map on your site? Check whether your installed version is affected.

Scan your site free

Contact Form 7 extension for Google Map fields <= 1.8.3 - Stored Cross-Site Scripting

high

The Contact Form 7 extension for Google Map fields plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple form fields in versions up to, and including, 1.8.3 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web scripts in pages...

CVSS:
7.2
Affected:
up to 1.8.3
Fixed in:
1.8.4
Disclosed:
May 3, 2023

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database