Vulnerabilities > Mapster

DATE CVE VULNERABILITY TITLE RISK
2024-10-25 CVE-2024-9235 Improper Authorization vulnerability in Mapster WP Maps
The Mapster WP Maps plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to an insufficient capability check on the mapster_wp_maps_set_option_from_js() function in all versions up to, and including, 1.5.0.
network
low complexity
mapster CWE-285
8.8
2024-01-08 CVE-2024-21744 Cross-site Scripting vulnerability in Mapster WP Maps
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mapster Technology Inc.
network
low complexity
mapster CWE-79
5.4