PT-2025-46270 · WordPress · Add Multiple Marker

Hardik Patel

·

Published

2025-11-11

·

Updated

2025-11-11

·

CVE-2025-11999

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Add Multiple Marker plugin for WordPress versions up to and including 1.2
Description The Add Multiple Marker plugin for WordPress is susceptible to unauthorized data modification because of a missing capability check in the addmultiplemarker reset map() and amm save map api() functions. This allows unauthenticated attackers to update the map API and reset maps.
Recommendations Update the Add Multiple Marker plugin to a version later than 1.2.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-11999

Affected Products

Add Multiple Marker