exovia GDPR Google Maps Security & Risk Analysis

wordpress.org/plugins/exactly-gdpr-google-maps

exovia GDPR Google Maps enables you to integrate Google Maps in a privacy compliant manner that respects the privacy of your visitors.

4K active installs v1.0.16 PHP 7.0+ WP 5.6+ Updated May 7, 2025
dsgvogdprgoogle-mapsmaps
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is exovia GDPR Google Maps Safe to Use in 2026?

Generally Safe

Score 100/100

exovia GDPR Google Maps has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 11mo ago
Risk Assessment

The "exactly-gdpr-google-maps" v1.0.16 plugin exhibits a mixed security posture. On the positive side, there are no known vulnerabilities (CVEs) or critical taint flows identified. The absence of file operations and external HTTP requests is also reassuring. However, significant concerns arise from the static analysis. The plugin lacks any capability checks or nonce checks, which are fundamental security mechanisms in WordPress. This means that the single shortcode, while not an AJAX or REST API endpoint, could potentially be exploited if it handles user-supplied data without proper sanitization or authorization, although no specific unsanitized flows were detected.

The plugin's SQL query practices are also a point of concern, with 100% of its SQL queries not using prepared statements. This is a critical vulnerability that exposes the application to SQL injection attacks. Furthermore, only 37% of output escaping is properly implemented, suggesting potential cross-site scripting (XSS) vulnerabilities in areas where user-controlled data is displayed without adequate sanitization.

Overall, while the plugin has a clean vulnerability history and no critical technical flaws like taint flows, the lack of fundamental security checks (capability/nonce) and poor handling of SQL queries and output escaping present a notable risk. Users should be cautious until these weaknesses are addressed.

Key Concerns

  • No capability checks
  • No nonce checks
  • 100% of SQL queries not prepared
  • Low percentage of proper output escaping (37%)
Vulnerabilities
None known

exovia GDPR Google Maps Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

exovia GDPR Google Maps Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
29
17 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

37% escaped46 total outputs
Attack Surface

exovia GDPR Google Maps Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[exactly-gdpr-map] includes\exggmap-shortcode.php:6
WordPress Hooks 5
actionadmin_enqueue_scriptsadmin\exggmap-admin.php:6
actionadmin_initadmin\exggmap-admin.php:20
actionadmin_menuadmin\exggmap-admin.php:118
actioninitincludes\exggmap-i18n.php:6
actionwp_enqueue_scriptspublic\exggmap-public.php:10
Maintenance & Trust

exovia GDPR Google Maps Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 7, 2025
PHP min version7.0
Downloads37K

Community Trust

Rating92/100
Number of ratings11
Active installs4K
Developer Profile

exovia GDPR Google Maps Developer Profile

Team exactly webdesign

1 plugin · 4K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect exovia GDPR Google Maps

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/exactly-gdpr-google-maps/public/css/style.css/wp-content/plugins/exactly-gdpr-google-maps/public/js/gdpr-maps-frontend-script.js
Script Paths
/wp-content/plugins/exactly-gdpr-google-maps/public/js/gdpr-maps-frontend-script.js
Version Parameters
exactly-gdpr-google-maps/public/css/style.css?ver=exactly-gdpr-google-maps/public/js/gdpr-maps-frontend-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
exggmap-placeholder-element
HTML Comments
<!-- exactly GDPR Google Maps Placeholder --><!-- exactly GDPR Google Maps -->
Data Attributes
data-exggmap-iframe-src
JS Globals
window.exggmap_vars
Shortcode Output
[exactly-gdpr-map]
FAQ

Frequently Asked Questions about exovia GDPR Google Maps