Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Benjamin Pick Geolocation IP Detection allows Stored XSS. This issue affects Geolocation IP Detection: from n/a through 5.5.0.
We have discovered 167 live websites that are affected by CVE-2025-57993.
| Product | |
| Category | Wordpress Plugins |
| Vulnerable Domains | 167 live websites (41% of Geoip Detect install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 11 versions ( 92% of all versions) |
| 49 websites | |
| 54 websites | |
| 12 websites | |
| 8 websites | |
| 6 websites | |
| 3 websites | |
| 3 websites | |
| 3 websites | |
| 3 websites | |
| 3 websites |
| .com | 75 websites |
| .com.au | 7 websites |
| .org | 5 websites |
| .ca | 3 websites |
| .co.uk | 3 websites |
| .ru | 2 websites |
| .eu | 2 websites |
| .at | 1 websites |
| .be | 1 websites |
| .se | 1 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| ******.com | **,*** | ||
| ***********.com | **,*** | ||
| ***********.com | **,*** | ||
| ****.com | ***,*** | ||
| **.news | ***,*** | ||
| *****.com | ***,*** | ||
| ***************.com | ***,*** | ||
| *******************.ch | ***,*** | ||
| ****.com | ***,*** | ||
| ***.com | ***,*** |
FAQ