PT-2025-49911 · WordPress · Wp Amaps

Published

2025-12-09

·

Updated

2025-12-15

·

CVE-2025-67535

CVSS v3.1

6.6

Medium

VectorAV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions WP Maps versions through 4.8.6
Description The WP Maps plugin contains a flaw related to the deserialization of untrusted data, which allows for object injection. This issue impacts the plugin’s functionality.
Recommendations Update WP Maps to a version newer than 4.8.6.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2025-67535

Affected Products

Wp Amaps