First published: Wed May 07 2025(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sabuj Kundu CBX Map for Google Map & OpenStreetMap allows DOM-Based XSS. This issue affects CBX Map for Google Map & OpenStreetMap: from n/a through 1.1.12.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress CBX Map for Google Map & OpenStreetMap | >=1.1.12 | |
Sabuj Kundu CBX Map for Google Map & OpenStreetMap | <=1.1.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-47669 has been classified as a high severity vulnerability due to its potential for allowing unauthorized script execution through DOM-Based XSS.
To fix CVE-2025-47669, update the Sabuj Kundu CBX Map for Google Map & OpenStreetMap to version 1.1.13 or later.
CVE-2025-47669 affects versions of Sabuj Kundu CBX Map for Google Map & OpenStreetMap from release up to 1.1.12.
CVE-2025-47669 is classified as a Cross-Site Scripting (XSS) vulnerability that arises from improper neutralization of input during web page generation.
The vendor associated with CVE-2025-47669 is Sabuj Kundu, the developer of the affected CBX Map for Google Map & OpenStreetMap.