
MapifyLite (by MapifyPro) Security & Risk Analysis
wordpress.org/plugins/mapifyliteMapifyLite is an elite plugin for WordPress that implements fully-customized maps on your site.
Is MapifyLite (by MapifyPro) Safe to Use in 2026?
Generally Safe
Score 100/100MapifyLite (by MapifyPro) has a strong security track record. Known vulnerabilities have been patched promptly. It's a solid choice for most WordPress installations.
The mapifylite plugin, version 5.1.1, demonstrates a mixed security posture. On the positive side, it effectively uses prepared statements for all SQL queries and has no reported critical or high-severity vulnerabilities. The absence of file operations and the limited external HTTP requests are also good indicators. However, several areas raise concerns. The presence of an unprotected AJAX handler significantly expands the attack surface without proper authentication, which is a critical oversight. Furthermore, nearly half of the output escaping is not properly handled, suggesting a potential for Cross-Site Scripting (XSS) vulnerabilities, especially when combined with the unsanitized taint flows. The plugin's vulnerability history, though currently clear of unpatched issues, includes a past medium-severity XSS vulnerability, which aligns with the observed output escaping issues and highlights a recurring weakness.
Key Concerns
- Unprotected AJAX handler
- Significant unescaped output
- Unsanitized taint flows found
- Bundled Select2 library
MapifyLite (by MapifyPro) Security Vulnerabilities
CVEs by Year
Severity Breakdown
1 total CVE
MapifyLite and MapifyPro <= 3.3 - Authenticated Stored Cross-Site Scripting
MapifyLite (by MapifyPro) Release Timeline
MapifyLite (by MapifyPro) Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
MapifyLite (by MapifyPro) Attack Surface
AJAX Handlers 3
Shortcodes 1
WordPress Hooks 48
Maintenance & Trust
MapifyLite (by MapifyPro) Maintenance & Trust
Maintenance Signals
Community Trust
MapifyLite (by MapifyPro) Alternatives
WP Go Maps (formerly WP Google Maps)
wp-google-maps
The easiest to use Google maps plugin! Create a custom Google map, map block, store locator or map widget with high quality markers containing categor …
Hotjar
hotjar
The fast & visual way to understand your users.
iframe
iframe
[iframe src="http://www.youtube.com/embed/7_nAZQt9qu0" width="100%" height="500"] shortcode
WP Maps – Store Locator,Google Maps,OpenStreetMap,Mapbox,Listing,Directory & Filters
wp-google-map-plugin
WordPress map plugin for Google Maps, OpenStreetMap & Mapbox with store locator, filterable listings & custom markers.
WP Store Locator
wp-store-locator
An easy to use location management system that enables users to search for nearby physical stores.
MapifyLite (by MapifyPro) Developer Profile
1 plugin · 300 total installs
How We Detect MapifyLite (by MapifyPro)
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/mapifylite/assets/vendor/leaflet-1.7.1/leaflet.css/wp-content/plugins/mapifylite/assets/vendor/leaflet/markercluster/MarkerCluster.css/wp-content/plugins/mapifylite/assets/vendor/leaflet/markercluster/MarkerCluster.Default.css/wp-content/plugins/mapifylite/assets/vendor/leaflet/locatecontrol/L.Control.Locate.min.css/wp-content/plugins/mapifylite/assets/map.css/wp-content/plugins/mapifylite/assets/vendor/slick/slick.css/wp-content/plugins/mapifylite/assets/vendor/slick/slick-theme.css/wp-content/plugins/mapifylite/assets/popup.css+9 more//fonts.googleapis.com/css?family=Montserratmapifylite/assets/map.css?ver=mapifylite/assets/popup.css?ver=mapifylite/assets/js/dist/bundle.js?ver=HTML / DOM Fingerprints
mapify-plugin-list-promotionmpfy-or-textmpfy-closest-pindata-mapifypro-map-idmapify_script_settings