CVE-2022-25600

WordPress WP Google Map plugin <= 4.2.3 - Cross-Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability affecting Delete Marker Category, Delete Map, and Copy Map functions in WP Google Map plugin (versions <= 4.2.3).


We have discovered 8,509 live websites that are affected by CVE-2022-25600.

Test my site




Affected Software

Product  WP Google Map Plugin
Category Wordpress Plugins
Vulnerable Domains8,509 live websites (64.47% of WP Google Map Plugin install base)
Vulnerable Versions
  • from 0 before 4.2.3
Vulnerable Versions Count4 versions ( 10.81% of all versions)


Common Weakness Enumeration

CWE-352 Cross-Site Request Forgery (CSRF)



Details

  • Published - Mar 11, 2022
  • Updated - Feb 20, 2025

Credits

  • Vulnerability discovered by Ex.Mi (Patchstack).

CVE-2022-25600 usage by Country

United States2,354 websites



Germany980 websites
France638 websites
Poland373 websites
Italy353 websites
GB335 websites
Spain267 websites
Netherlands185 websites
Turkey181 websites
Brazil159 websites

CVE-2022-25600 usage by TLD

.com3,381 websites
.de448 websites
.org313 websites
.pl287 websites
.it285 websites
.fr210 websites
.co.uk193 websites
.com.br184 websites
.com.au180 websites
.nl164 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2022-25600

Top websites that are affected by CVE-2022-25600. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.*****.fr European Union***,***
****************.se Sweden***,***
***********.*********.eu France***,***
****************.space United States***,***
***********************************.de Germany***,***
******************.com Germany***,***
********.***********.org Austria***,***
***************.com United States***,***
******.eu Austria***,***
*********.com France***,***
See full domain list

FAQ

CVE-2022-25600 is Cross-Site Request Forgery (CSRF) in WP Google Map Plugin
A total of 8,509 websites have been identified as vulnerable to CVE-2022-25600, discovered through global website indexing conducted by WebTechSurvey.
WP Google Map Plugin is susceptible to CVE-2022-25600 vulnerability.
WP Google Map Plugin versions before 4.2.3 are vulnerable to CVE-2022-25600.
Version 4.2.3 of WP Google Map Plugin addresses the CVE-2022-25600 security vulnerability.