CVE Database /
CVE-2026-8386
CVE
CVE-2026-8386 — WP Go Maps – Google Map, OpenStreetMap, Leaflet Map [wp-google-maps] < 10.0.10
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2026-8386
|
WP Go Maps – Google Map, OpenStreetMap, Leaflet Map [wp-google-maps] < 10.0.10 |
Exposure of Sensitive Information to an Unauthorized Actor |
Unknown
|
< 10.0.10
|
10.0.10 |
2026-06-15 |
—
|
CVE-2026-8386
The WP Go Maps plugin prior to version 10.0.10 contains a vulnerability in its public single-marker REST endpoint, allowing unauthorized access to unapproved markers containing sensitive location data and personal identifiable information. This exposure occurs due to inadequate filtering of approval states for such endpoints. Affected marker details include geographic coordinates and text fields like address and description.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings