Known Vulnerabilities for OSM OpenStreetMap by Photoweblog
Listed below are 9 of the newest known vulnerabilities associated with "OSM OpenStreetMap" by "Photoweblog".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-33559 json | WordPress Plugin "OpenStreetMap" provided by MiKa contains a cross-site scripting vulnerability. On the site with the affecte... | Not Provided | 2026-03-27 | 2026-03-27 |
| CVE-2026-4429 json | The OSM – OpenStreetMap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'marker_name' and 'file_c... | Not Provided | 2026-04-09 | 2026-04-09 |
| CVE-2025-47669 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sabuj Kundu CBX Map for... | Not Provided | 2025-05-07 | 2026-04-01 |
| CVE-2025-13364 json | The WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters plugin for WordPress is vulnerable... | Not Provided | 2026-04-16 | 2026-04-16 |
| CVE-2025-9123 json | The CBX Map for Google Map & OpenStreetMap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the popup he... | Not Provided | 2025-09-11 | 2026-04-08 |
| CVE-2024-11827 json | The Out of the Block: OpenStreetMap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ootb_q... | Not Provided | 2024-12-13 | 2026-04-08 |
| CVE-2024-3670 json | The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) plugin for WordPress is vulnerable to Stored Cross-Site Scrip... | Not Provided | 2024-05-02 | 2026-04-08 |
| CVE-2024-3604 json | The OSM – OpenStreetMap plugin for WordPress is vulnerable to SQL Injection via the 'tagged_filter' attribute of the 'osm_m... | Not Provided | 2024-07-09 | 2026-04-08 |
| CVE-2024-3603 json | The OSM – OpenStreetMap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'osm_map' shortc... | Not Provided | 2024-07-09 | 2026-04-08 |