
CVE-2026-3222 The WP Maps plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'location_id' parameter in all versions up to, and including, 4.9.1. This is du… https://www.cve.org/CVERecord?id=CVE-2026-3222
Post summary
The notice announces a time-based blind SQL injection vulnerability (CVE-2026-3222) affecting WP Maps plugin versions up to 4.9.1. No PoC, exploit code, active exploitation, or patch details are provided.
