WP Open Street Map

WP Open Street Map has one disclosed vulnerability in the WordSec catalog, all reported in 2023; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.

The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).

The one issue recorded for WP Open Street Map has a vendor fix available, so running the current release closes it.

All of these findings were reported by Nguyen Xuan Chien. WP Open Street Map is installed on roughly 3,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.1.

Strategic Overview

Avg CVSSMedium
4.3/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all WP Open Street Map vulnerabilities before they are exploited.

Highest severity on recordCVSS 4.3CVE-2023-45645

WP Open Street Map <= 1.25 - Cross-Site Request Forgery via wp_openstreetmaps

Read the full analysis

Vulnerability Records

1 records
WP Open Street Map banner
Latestv1.41

WP Open Street Map

manu225

Author

manu225

3.9(10)
78/100
Last Updated
2026-08-15 (1mo ago)
Active Installs
3,000+
Downloads
46,725
Requires WP
3.5+
Requires PHP
0+
Tested up to
WP 7.1
Created
2017-09-19 (9y ago)

Create easily maps with OpenStreetMap (compatible with multisite). Here some examples A Pro version with more options is available: https://www.info-d-74.com/en/produit/wp-openstreetmap-pro-plugin-wordpress/

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C