CVE-2026-73367: WordPress Easy Google Maps plugin < 1.14.2 - Remote File Inclusion vulnerability
Published Aug 18, 2026
·Updated
Unauthenticated Remote File Inclusion in Easy Google Maps < 1.14.2 versions.
Affected Software
1 affected component
wordpress/Easy Google Maps<1.14.2
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Easy Google Maps pluginto a version that resolves this vulnerability.Fixed in 1.14.2
Event History
Aug 18, 2026
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments are exposed to this vulnerability?
Sites running Easy Google Maps versions earlier than 1.14.2 are affected. The issue is remotely reachable and requires no authentication or user interaction.
2
What does an attacker need to exploit it, and what is the expected impact?
An attacker can attempt exploitation over the network without an account, with low attack complexity. The listed impact includes low confidentiality and integrity impact, with no availability impact.