
Advanced Google Maps Shortcode Security & Risk Analysis
wordpress.org/plugins/advanced-google-maps-shortcodeAdvanced Google Maps shortcode. Support for:
Is Advanced Google Maps Shortcode Safe to Use in 2026?
Generally Safe
Score 85/100Advanced Google Maps Shortcode has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'advanced-google-maps-shortcode' plugin version 0.2 presents a generally positive security posture, primarily due to its robust adherence to secure coding practices. The complete absence of dangerous functions, SQL injection vulnerabilities, and unsanitized file operations, coupled with 100% output escaping and prepared statements for SQL queries, are significant strengths. Furthermore, the lack of known CVEs, both historical and current, indicates a well-maintained and secure development history.
Despite these strengths, a key area for concern is the lack of nonce checks. While the plugin only has one entry point (a shortcode) and no unprotected AJAX handlers or REST API routes, the absence of nonce verification on its single shortcode could potentially be exploited if the shortcode's functionality is sensitive and could be triggered by a malicious user in a context where they wouldn't normally be able to execute it (e.g., via a crafted link or embedded form on another site). The presence of capability checks suggests an awareness of access control, but their effectiveness without nonce protection needs careful consideration.
In conclusion, the plugin exhibits strong defensive coding practices, making it appear secure at first glance. However, the singular absence of nonce checks on its shortcode is a notable weakness that could, in specific scenarios, lead to security vulnerabilities. The plugin's clean vulnerability history is encouraging, but proactive implementation of nonce checks on its shortcode would further solidify its security.
Key Concerns
- Missing nonce checks on shortcode
Advanced Google Maps Shortcode Security Vulnerabilities
Advanced Google Maps Shortcode Release Timeline
Advanced Google Maps Shortcode Code Analysis
Bundled Libraries
Output Escaping
Advanced Google Maps Shortcode Attack Surface
Shortcodes 1
WordPress Hooks 3
Maintenance & Trust
Advanced Google Maps Shortcode Maintenance & Trust
Maintenance Signals
Community Trust
Advanced Google Maps Shortcode Alternatives
Simple Shortcode for Google Maps
simple-google-maps-short-code
A simple shortcode for embedding Google Maps in any WordPress post, page or widget.
Simple Map
simple-map
Easy way to embed google map(s).
Vanilla Adaptive Maps
vanilla-adaptive-maps
Map any address with a shortcode. Mobile users get a static map; desktop users will see a google map.
Google Maps Photo Gallery
google-maps-photo-gallery
The shortcode for gallery on Google Maps with geotagged photos.
Map pins
map-pins
Add custom markers on an embedded Google Map. Includes full search-ability, my-location via GPS, a list of nearby locations, and business hours.
Advanced Google Maps Shortcode Developer Profile
8 plugins · 1K total installs
How We Detect Advanced Google Maps Shortcode
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/advanced-google-maps-shortcode/js/markerclusterer.min.js/wp-content/plugins/advanced-google-maps-shortcode/js/tinymce-button.min.jshttp://maps.google.com/maps/api/jsHTML / DOM Fingerprints
agms-google-map-infoagms_tinymce_button<div id="agms_<script type="text/javascript">
var locations = var center = function $map_id() {