
Maps by G Security & Risk Analysis
wordpress.org/plugins/leaflet-address-mapDisplay addresses on beautiful, interactive maps using OpenStreetMap. An open-source alternative to Google Maps that requires no API key.
Is Maps by G Safe to Use in 2026?
Generally Safe
Score 100/100Maps by G has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "leaflet-address-map" v1.0.0 plugin exhibits a generally positive security posture based on the provided static analysis and vulnerability history. The code demonstrates excellent practices in handling SQL queries with prepared statements and properly escaping all output, which are crucial for preventing common web vulnerabilities like SQL injection and XSS. The absence of dangerous functions, file operations, and external HTTP requests further strengthens its security profile.
However, there are a few areas of concern that warrant attention. The plugin has a single shortcode as an entry point, and importantly, it lacks any nonces or capability checks associated with it. While there are no AJAX handlers or REST API routes that are unprotected, the shortcode itself could potentially be a vector for certain types of attacks if not carefully handled within its implementation (though the static analysis doesn't reveal specific issues in this regard).
The complete lack of recorded vulnerabilities, including CVEs, is a strong indicator of diligent security practices or potentially limited historical scrutiny. This is a significant strength. Despite the absence of explicit security checks on the shortcode, the overall analysis suggests a well-written plugin with a good foundation. Future development should consider adding nonces or capability checks to the shortcode for enhanced security, even if no immediate vulnerabilities are apparent.
Key Concerns
- Shortcode without nonce check
- Shortcode without capability check
Maps by G Security Vulnerabilities
Maps by G Code Analysis
Output Escaping
Maps by G Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Maps by G Maintenance & Trust
Maintenance Signals
Community Trust
Maps by G Alternatives
GoMaps Address Autocomplete for Checkout
gomaps-address-autocomplete-for-checkout
GoMaps Address Autocomplete enhances checkout address fields using real-time, fast and privacy-respecting location suggestions. Built for WooCommerce.
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
Easy Google Maps
google-maps-easy
Google Maps with markers, locations and clusterization, KML layers and filters. Custom Google map markers with text, images, videos, links.
Store Locator WordPress
agile-store-locator
Agile Store Locator is a premium store finder plugin designed to offer you immediate access to all the best stores in your local area.
Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps)
leaflet-maps-marker
The most comprehensive & user-friendly mapping solution for WordPress
Maps by G Developer Profile
1 plugin · 0 total installs
How We Detect Maps by G
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/leaflet-address-map/assets/vendor/leaflet/leaflet.css/wp-content/plugins/leaflet-address-map/assets/css/mbyg-styles.css/wp-content/plugins/leaflet-address-map/assets/js/mbyg-lazy.js/wp-content/plugins/leaflet-address-map/assets/vendor/leaflet/leaflet.js/wp-content/plugins/leaflet-address-map/assets/css/mbyg-admin.css/wp-content/plugins/leaflet-address-map/assets/js/mbyg-admin.js/wp-content/plugins/leaflet-address-map/assets/js/mbyg-lazy.js/wp-content/plugins/leaflet-address-map/assets/js/mbyg-admin.jsleaflet-address-map/assets/css/mbyg-styles.css?ver=leaflet-address-map/assets/js/mbyg-lazy.js?ver=leaflet-address-map/assets/css/mbyg-admin.css?ver=leaflet-address-map/assets/js/mbyg-admin.js?ver=HTML / DOM Fingerprints
mbyg-map-container<!-- Maps by G WordPress Plugin --><!-- End Maps by G WordPress Plugin -->data-providerdata-zoomdata-heightdata-widthdata-titledata-zoomcontrol+1 morembygAdminData[mbyg_map]