Geo Mashup

Explore Geo Mashup vulnerabilities across all versions. Currently tracking 17 known vulnerabilities, including severity, impact, and patch status.

01234567891027.01.2015Today27.01.20156.1Geo Mashup < 1.8.3 - Cross-Site Scripting CVSS 6.1 · 27.01.201516.07.20186.4Geo Mashup - < 1.10.4 - Cross-Site Scripting CVSS 6.4 · 16.07.201804.03.20226.3Freemius SDK <= 2.4.2 - Missing Authorization Checks CVSS 6.3 · 04.03.202218.07.20236.1Freemius SDK <= 2.5.9 - Reflected Cross-Site Scripting via fs_request_get CVSS 6.1 · 18.07.202316.09.20246.5Geo Mashup <= 1.13.12 - Authenticated (Contributor+) Stored Cross-Site Scripting CVSS 6.5 · 16.09.202430.09.20246.4Geo Mashup <= 1.13.13 - Authenticated (Contributor+) Stored Cross-Site Scripting via geo_mashup_visible_posts_list Shortcode CVSS 6.4 · 30.09.202425.07.20258.1Geo Mashup <= 1.13.16 - Unauthenticated Local File Inclusion CVSS 8.1 · 25.07.202524.02.20267.5Geo Mashup <= 1.13.17 - Unauthenticated SQL Injection via 'sort' Parameter CVSS 7.5 · 24.02.202630.04.20266.1Freemius <= 2.10.1 - Reflected DOM-Based Cross-Site Scripting via url Parameter CVSS 6.1 · 30.04.202601.05.20267.5Geo Mashup <= 1.13.18 - Unauthenticated Time-Based SQL Injection via 'object_ids' Parameter CVSS 7.5 · 01.05.20267.5Geo Mashup <= 1.13.18 - Unauthenticated Time-Based SQL Injection via 'map_post_type' Parameter CVSS 7.5 · 01.05.20267.5Geo Mashup <= 1.13.18 - Unauthenticated Time-Based SQL Injection via 'sort' Parameter CVSS 7.5 · 01.05.20266.5Geo Mashup <= 1.13.19 - Authenticated (Subscriber+) SQL Injection via 'geo_mashup_null_fields' Parameter CVSS 6.5 · 01.05.202626.05.20266.4Geo Mashup <= 1.13.18 - Authenticated (Contributor+) Stored Cross-Site Scripting CVSS 6.4 · 26.05.20267.2Geo Mashup <= 1.13.19 - Unauthenticated Stored Cross-Site Scripting CVSS 7.2 · 26.05.202627.05.20265.3Geo Mashup <= 1.13.19 - Missing Authorization to Unauthenticated Plugin Settings Disclosure via 'geo_mashup_content' Parameter CVSS 5.3 · 27.05.202603.06.20266.5Geo Mashup <= 1.13.19 - Authenticated (Subscriber+) SQL Injection CVSS 6.5 · 03.06.2026

Strategic Overview

Avg CVSSMedium
6.7/ 10
Patch Coverage100%
Open

0

Fixed

17

Get automatic notifications for all Geo Mashup vulnerabilities before they are exploited.

Vulnerability Records

17 records
2026-06-03 00:00CVE-2026-48967
6.5
Medium
Jonathan DerschYes
2026-05-27 18:02CVE-2026-7552
5.3
Medium
t0ann9uy3nYes
2026-05-26 00:00CVE-2026-27427
6.4
Medium
Muhammad Yudha - DJYes
2026-05-26 00:00CVE-2026-42734
7.2
High
she11fYes
2026-05-01 19:15CVE-2026-6457
6.5
Medium
Leonid Semenenko (lsemenenko)Yes
2026-05-01 00:00CVE-2026-4062
7.5
High
Naoya Takahashi (nakko)Yes
2026-05-01 00:00CVE-2026-4061
7.5
High
Naoya Takahashi (nakko)Yes
2026-05-01 00:00CVE-2026-4060
7.5
High
Naoya Takahashi (nakko)Yes
2026-04-30 17:17CVE-2024-13362
6.1
Medium
Asaf MozesYes
2026-02-24 19:41CVE-2026-2416
7.5
High
Nabil IrawanYes
Showing 1–10 of 17 reports

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C