CVE-2026-81770: WordPress Interactive Geo Maps plugin <= 1.6.30 - Reflected Cross Site Scripting (XSS) vulnerability
Published Sep 2, 2026
·Updated
Unauthenticated Cross Site Scripting (XSS) in Interactive Geo Maps <= 1.6.30 versions.
Affected Software
1 affected component
wordpress/interactive-geo-maps<=1.6.30
Event History
Sep 2, 2026
CVE Published
via MITRE·11:37 AM
Data Sourced
via MITRE·11:37 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Does exploitation require a user to take any action?
Yes. The CVSS vector indicates that user interaction is required for successful exploitation.
2
What impact could successful exploitation have?
The CVSS assessment rates confidentiality, integrity, and availability impact as low, with scope changed.