
ACF: Yandex Maps Field Security & Risk Analysis
wordpress.org/plugins/acf-yandex-maps-fieldACF: Yandex Maps Field
Is ACF: Yandex Maps Field Safe to Use in 2026?
Use With Caution
Score 63/100ACF: Yandex Maps Field has 1 unpatched vulnerability. Evaluate alternatives or apply available mitigations.
The acf-yandex-maps-field plugin, version 1.1, presents a mixed security posture. While the static analysis reveals a lack of exposed entry points like AJAX handlers, REST API routes, or shortcodes, and demonstrates a strong adherence to prepared statements for SQL queries, there are areas of concern. The presence of one unpatched medium severity vulnerability (Cross-site Scripting) is a significant risk, especially given its recent discovery. The output escaping, while high at 84%, still leaves a small percentage of outputs potentially vulnerable to XSS if an attacker can influence them. The lack of observed taint flows could be due to the limited attack surface or the nature of the analysis, but it doesn't negate the historical vulnerability pattern.
Key Concerns
- Unpatched medium severity CVE (XSS)
- Potential for XSS due to unescaped output (16%)
ACF: Yandex Maps Field Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
ACF: Yandex Maps Field <= 1.1 - Authenticated (Administrator+) Stored Cross-Site Scripting
ACF: Yandex Maps Field Code Analysis
Output Escaping
ACF: Yandex Maps Field Attack Surface
WordPress Hooks 4
Maintenance & Trust
ACF: Yandex Maps Field Maintenance & Trust
Maintenance Signals
Community Trust
ACF: Yandex Maps Field Alternatives
Simple Image XML Sitemap
simple-image-xml-sitemap
The Simple Image XML Sitemap plugin will generate a XML Sitemap for specifically for all images including images uploaded as Advanced Custom Fields (P …
Maps for WP
maps-for-wp
A handy plugin for inserting Yandex and Google maps using shortcode.
Yandex Maps for Gutenberg
yamap-block-gutenberg
The plugin adds a simple Yandex Maps to your page. Do not forget to install the Gutenberg plugin (WordPress version 4.9.8 and below).
ACF: Google Maps Field (Multiple Markers)
acf-google-map-field-multiple-markers
An advanced Google Maps field for ACF that allows you to add multiple markers/pins to a single map field.
ShMapper by Teplitsa
shmapper-by-teplitsa
shMapper is a plugin, that allows you to create simple crowdsourcing maps based on OpenStreetMap and Yandex.Maps.
ACF: Yandex Maps Field Developer Profile
2 plugins · 800 total installs
How We Detect ACF: Yandex Maps Field
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/acf-yandex-maps-field/js/acf-yandex-map-frontend.js//api-maps.yandex.com/2.1/?lang=/js/acf-yandex-map-frontend.jsacf-yandex-map-frontend.js?ver=acf-yandex-map-api?ver=HTML / DOM Fingerprints
yandex-mapdata-zoom-controlldata-scroll-zoomymf_custom_dataymf_options<div class="yandex-map" id="