
Andreadb Google Maps Security & Risk Analysis
wordpress.org/plugins/andreadb-google-mapsAndreadb Google Maps is the easiest way to create responsive Google Maps with multiple markers.
Is Andreadb Google Maps Safe to Use in 2026?
Generally Safe
Score 85/100Andreadb Google Maps has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The andreadb-google-maps plugin v1.0.0 exhibits a concerning security posture due to a significant number of unprotected entry points. While the plugin demonstrates good practices in handling SQL queries with prepared statements and avoids file operations or external HTTP requests, the presence of three AJAX handlers without authentication checks is a major vulnerability. This lack of authorization could allow unauthorized users to trigger these handlers, potentially leading to unintended actions or data manipulation within the WordPress site. The plugin also uses the dangerous `create_function` construct, which can be a vector for code injection if not handled with extreme care. The taint analysis reveals one flow with unsanitized paths, indicating a potential for path traversal or manipulation, although it is not classified as critical or high severity in this analysis. Fortunately, the plugin has no recorded vulnerability history, which is a positive sign, but it does not negate the immediate risks identified in the current code. Overall, the plugin's strengths in SQL handling are overshadowed by critical weaknesses in access control for its AJAX endpoints and the use of a risky function, requiring immediate attention.
Key Concerns
- Unprotected AJAX handlers
- Use of dangerous create_function
- Unsanitized path in taint flow
- Low percentage of properly escaped output
Andreadb Google Maps Security Vulnerabilities
Andreadb Google Maps Code Analysis
Dangerous Functions Found
Output Escaping
Data Flow Analysis
Andreadb Google Maps Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 15
Maintenance & Trust
Andreadb Google Maps Maintenance & Trust
Maintenance Signals
Community Trust
Andreadb Google Maps Alternatives
WP Go Maps (formerly WP Google Maps)
wp-google-maps
The easiest to use Google maps plugin! Create a custom Google map, map block, store locator or map widget with high quality markers containing categor …
iframe
iframe
[iframe src="http://www.youtube.com/embed/7_nAZQt9qu0" width="100%" height="500"] shortcode
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
WP Store Locator
wp-store-locator
An easy to use location management system that enables users to search for nearby physical stores.
API KEY for Google Maps
api-key-for-google-maps
Retroactively add Google Maps API KEY to any theme or plugin.
Andreadb Google Maps Developer Profile
2 plugins · 20 total installs
How We Detect Andreadb Google Maps
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/andreadb-google-maps/includes/js/andreadb-google-maps-public.js/wp-content/plugins/andreadb-google-maps/includes/css/andreadb-google-maps-public.css/wp-content/plugins/andreadb-google-maps/admin/css/andreadb-google-maps-admin.css/wp-content/plugins/andreadb-google-maps/admin/js/andreadb-google-maps-admin.js/wp-content/plugins/andreadb-google-maps/admin/js/andreadb-google-maps-admin.jsandreadb-google-maps/includes/css/andreadb-google-maps-public.css?ver=andreadb-google-maps/admin/css/andreadb-google-maps-admin.css?ver=andreadb-google-maps/admin/js/andreadb-google-maps-admin.js?ver=HTML / DOM Fingerprints
dba-google-maps-iddata-dba_google_maps_nonceandreadb_google_maps