Quick Location Maps Security & Risk Analysis

wordpress.org/plugins/quick-location-maps

This Plugin insert a google map in to your posts using the Google Maps Api Free.

10 active installs v1.0.0 PHP + WP 2.8+ Updated Nov 10, 2012
custom-templatesgeolocationlatitudelongitudemaps
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Quick Location Maps Safe to Use in 2026?

Generally Safe

Score 85/100

Quick Location Maps has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 13yr ago
Risk Assessment

The quick-location-maps plugin v1.0.0 exhibits a generally good security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, cron events, or file operations significantly limits its attack surface. Furthermore, the fact that all detected SQL queries utilize prepared statements is a strong indicator of secure database interaction. The plugin also has no recorded vulnerability history, which suggests a history of stable and secure development.

However, a critical concern arises from the complete lack of output escaping. With 10 total outputs and 0% properly escaped, this presents a high risk of Cross-Site Scripting (XSS) vulnerabilities. Any data that is displayed to users, regardless of its origin within the plugin, could potentially be manipulated by an attacker to inject malicious scripts. The absence of nonce checks and capability checks on any entry points, while seemingly minor given the limited attack surface, also contributes to a less robust security framework. While the plugin has no known CVEs, the unescaped output is a substantial and present risk that needs immediate attention.

Key Concerns

  • 0% output escaping
  • 0 nonce checks
  • 0 capability checks
Vulnerabilities
None known

Quick Location Maps Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Quick Location Maps Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
10
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped10 total outputs
Attack Surface

Quick Location Maps Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[QuickMap] quickMap.php:45
Maintenance & Trust

Quick Location Maps Maintenance & Trust

Maintenance Signals

WordPress version tested3.3.2
Last updatedNov 10, 2012
PHP min version
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Quick Location Maps Developer Profile

Shashikanta

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Quick Location Maps

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

Shortcode Output
<iframe width=&q=&hnear=&ll=
FAQ

Frequently Asked Questions about Quick Location Maps