Sploitus

CVE-2023-6627

1 known exploit for CVE-2023-6627

The WP Go Maps (formerly WP Google Maps) WordPress plugin before 9.0.28 does not properly protect most of its REST API routes, which attackers can abuse to store malicious HTML/Javascript on the site.

Affected products
Wp Go Maps
Codecabin Wp Go Maps
< 9.0.28
Fix
Available
CVSS 3.1
6.1 MEDIUM
EPSS
0.6% (46th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2024-01-08
CVE-2023-6627 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2023-6627

Proof-of-concept code and exploit modules indexed by Sploitus