Unauthenticated XSS Vulnerability in Interactive Geo Maps Plugin by WordPress
CVE-2026-81770
7.1HIGH
What is CVE-2026-81770?
The Interactive Geo Maps plugin for WordPress is vulnerable to reflected Cross Site Scripting (XSS), which can be exploited by attackers to execute arbitrary JavaScript code in the context of a user's session. This vulnerability arises from improper input validation, allowing malicious scripts to be injected through the plugin's features. Users running versions 1.6.30 or lower should consider updating to mitigate potential risks.
Affected Version(s)
Interactive Geo Maps <= 1.6.30