@google/maps
CVE History
| CVE | Affected | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|---|
| <= 3.2 | — | 4.3 MEDIUM | ||
The Googlemaps plugin 3.2 and earlier for Joomla! allows remote attackers with control of a sub-domain belonging to a victim domain to cause a denial of service via the 'url' parameter to plugin_googlemap3_kmlprxy.php. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-7428. | ||||
| <= 3.0 | — | 7.5 HIGH | ||
The Googlemaps plugin before 3.1 for Joomla! allows remote attackers to conduct XML injection attacks via the url parameter to plugin_googlemap2_proxy.php. | ||||
| <= 3.0 | — | 5 MEDIUM | ||
The Googlemaps plugin before 3.1 for Joomla! allows remote attackers to cause a denial of service via the url parameter to plugin_googlemap2_proxy.php. | ||||
| <= 3.0 | — | 5 MEDIUM | ||
Full path disclosure in the Googlemaps plugin before 3.1 for Joomla!. | ||||
| <= 3.0 | — | 5 MEDIUM | ||
The Googlemaps plugin before 3.1 for Joomla! allows remote attackers to bypass an intended protection mechanism. | ||||
| <= 3.0 | — | 4.3 MEDIUM | ||
Cross-site scripting (XSS) vulnerability in the Googlemaps plugin before 3.1 for Joomla!. | ||||
| <= 3.0 | — | 4.3 MEDIUM | ||
Cross-site scripting (XSS) vulnerability in the Googlemaps plugin before 3.1 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the xmlns parameter. | ||||