Known Vulnerabilities for Store Locator Plus by De-baat
Listed below are 2 of the newest known vulnerabilities associated with "Store Locator Plus" by "De-baat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-9594 json | The WP Maps – Google Maps,OpenStreetMap,Mapbox,Store Locator,Listing,Directory & Filters plugin for WordPress is vulnerable... | Not Provided | 2026-06-06 | 2026-06-06 |
| CVE-2026-9062 json | The Store Locator WordPress plugin before 1.6.9 does not validate a parameter before using it in a file path, allowing high-p... | Not Provided | 2026-06-13 | 2026-06-15 |
| CVE-2026-9061 json | The Store Locator WordPress plugin before 1.6.9 does not sanitize and escape store logo metadata before storing it and output... | Not Provided | 2026-06-13 | 2026-06-15 |
| CVE-2026-9060 json | The Store Locator WordPress plugin before 1.6.6 does not sanitize and escape one of its settings before storing it and output... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2025-67516 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Agile Logix Store Locat... | Not Provided | 2025-12-09 | 2026-04-27 |
| CVE-2024-30181 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Plainware Locatoraid St... | Not Provided | 2024-03-27 | 2026-04-28 |
| CVE-2024-22282 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michael Torbert SimpleM... | Not Provided | 2024-01-31 | 2026-04-28 |
| CVE-2023-50885 json | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in AGILELOGIX Store Locator Word... | Not Provided | 2024-04-18 | 2026-04-28 |
| CVE-2021-24290 json | There are several endpoints in the Store Locator Plus for WordPress plugin through 5.5.15 that could allow unauthenticated at... | 6.1 - MEDIUM | 2021-05-17 | 2021-05-24 |
| CVE-2021-24289 json | There is functionality in the Store Locator Plus for WordPress plugin through 5.5.14 that made it possible for authenticated ... | 8.8 - HIGH | 2021-05-17 | 2021-05-24 |