
Posts in Map Security & Risk Analysis
wordpress.org/plugins/posts-in-mapAdd short code [gmap] to insert in post a google map with advanced features and place geolocalized post in this map
Is Posts in Map Safe to Use in 2026?
Generally Safe
Score 85/100Posts in Map has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the 'posts-in-map' plugin v0.3 reveals an exceptionally clean codebase from a security perspective. There are no identified dangerous functions, all SQL queries use prepared statements, and all outputs are properly escaped. The absence of file operations, external HTTP requests, and any observed taint flows further strengthens this assessment. Furthermore, the plugin has no recorded vulnerability history, indicating a strong track record.
However, the analysis also highlights potential areas for concern. The complete lack of any capability checks, nonce checks, AJAX handlers, REST API routes, or shortcodes, while indicative of a minimal attack surface, also suggests that the plugin might not be performing any security-critical operations or handling user input that would necessitate these checks. This could be a sign of a very basic plugin, or it could mean that any potential vulnerabilities, if they existed, would be harder to detect through these common security signals. The plugin's strengths lie in its apparent adherence to secure coding practices for the limited functionality it appears to offer, but the lack of common security mechanisms warrants a degree of caution, especially if the plugin's functionality is more complex than initially apparent.
Key Concerns
- No capability checks found
- No nonce checks found
Posts in Map Security Vulnerabilities
Posts in Map Code Analysis
Posts in Map Attack Surface
Maintenance & Trust
Posts in Map Maintenance & Trust
Maintenance Signals
Community Trust
Posts in Map Alternatives
indomap
indomap
jQuery plugin to create google maps with advanced features (overlays, clusters, callbacks, events...)
Enable jQuery Migrate Helper
enable-jquery-migrate-helper
Get information about calls to deprecated jQuery features in plugins or themes.
jQuery Updater
jquery-updater
This plugin updates jQuery to the latest stable version on your website.
Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps)
leaflet-maps-marker
The most comprehensive & user-friendly mapping solution for WordPress
Use Google Libraries
use-google-libraries
Allows your site to use common javascript libraries from Google's AJAX Libraries CDN, rather than from WordPress's own copies.
Posts in Map Developer Profile
5 plugins · 320 total installs
How We Detect Posts in Map
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/posts-in-map/markers/http://maps.google.com/maps/api/js?sensor=falseHTML / DOM Fingerprints
gmap/* @TODO box per l'inserimento della georef */data-gmap3showMapaddMarkermaparrMarkersarrInfoWindowsmapInit<div id="gmap"