Interactive Map Widget Security & Risk Analysis

wordpress.org/plugins/interactive-map-widget

Interactive map widget for Elementor: Add maps with markers, titles, images, and links to posts and pages.

10 active installs v1.2.21 PHP 7.2+ WP 5.2+ Updated Mar 3, 2026
business-locationselementor-widgetinteractive-mapmap-with-locationsstore-locator
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Interactive Map Widget Safe to Use in 2026?

Generally Safe

Score 100/100

Interactive Map Widget has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "interactive-map-widget" plugin, version 1.2.21, exhibits a strong security posture based on the provided static analysis. The plugin appears to have no direct attack surface through AJAX handlers, REST API routes, shortcodes, or cron events that are unprotected. The code signals are also generally positive, with 100% of SQL queries utilizing prepared statements, a good rate of output escaping (88%), and the presence of nonce and capability checks. There are no indications of dangerous functions, file operations, external HTTP requests, or bundled libraries that could pose a risk. The taint analysis shows no flows with unsanitized paths, indicating no critical or high-severity vulnerabilities were detected in that area.

The plugin's vulnerability history is entirely clean, with no recorded CVEs of any severity. This lack of past vulnerabilities, combined with the robust static analysis findings, suggests a well-maintained and secure codebase. The plugin's strengths lie in its minimal attack surface, secure coding practices for database interactions and output handling, and its clear absence of known security flaws. However, it's important to note that the static analysis is based on the provided data, and while it paints a positive picture, comprehensive security testing often involves dynamic analysis and thorough code review beyond these specific signals. The limited number of analyzed flows in the taint analysis also means that while no issues were found, the scope of that analysis might be limited.

Key Concerns

  • Output escaping at 88% is good but not perfect
  • Only 2 taint flows analyzed; could be more comprehensive
Vulnerabilities
None known

Interactive Map Widget Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Interactive Map Widget Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
15
115 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

88% escaped130 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
nahiro_interactive_map_setup_page_content (plugin.php:290)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Interactive Map Widget Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 15
actionadmin_menuplugin.php:33
actionadmin_initplugin.php:192
actionadmin_initplugin.php:202
actionadmin_initplugin.php:263
actionadmin_menuplugin.php:279
actionadmin_menuplugin.php:349
actionelementor/elements/categories_registeredplugin.php:359
actionelementor/widgets/registerplugin.php:366
actionwp_enqueue_scriptsplugin.php:374
actionadmin_enqueue_scriptsplugin.php:379
actionelementor/editor/before_enqueue_stylesplugin.php:385
actionadmin_enqueue_scriptsplugin.php:419
actionwp_enqueue_scriptsplugin.php:428
actionplugins_loadedplugin.php:433
actionwp_enqueue_scriptswidget_map.php:1354
Maintenance & Trust

Interactive Map Widget Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 3, 2026
PHP min version7.2
Downloads4K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Interactive Map Widget Developer Profile

WordPress Hilfe & Support Nahiro.net

4 plugins · 110 total installs

76
trust score
Avg Security Score
96/100
Avg Patch Time
1472 days
View full developer profile
Detection Fingerprints

How We Detect Interactive Map Widget

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/interactive-map-widget/assets/img/tutorial/01-1.png/wp-content/plugins/interactive-map-widget/assets/img/tutorial/01-2.png/wp-content/plugins/interactive-map-widget/assets/img/tutorial/01-3.png/wp-content/plugins/interactive-map-widget/assets/img/tutorial/01-4.png/wp-content/plugins/interactive-map-widget/assets/img/tutorial/01-5.png/wp-content/plugins/interactive-map-widget/assets/img/tutorial/01-6.png/wp-content/plugins/interactive-map-widget/assets/img/tutorial/02-1.png/wp-content/plugins/interactive-map-widget/assets/img/tutorial/02-2.png

HTML / DOM Fingerprints

CSS Classes
nahiro-tbl-linknahiro-h1nahiro-img-verticalnahiro-img-horizontal-bigm-28
FAQ

Frequently Asked Questions about Interactive Map Widget