WordPress · Mappress Maps · CVE-2026-56011
**Name of the Vulnerable Software and Affected Versions**
MapPress Maps for WordPress versions prior to 2.97.4
**Description**
An unauthenticated Cross Site Scripting (XSS) issue exists, which allows an attacker to execute malicious scripts in the browser of a user by injecting code into a web page.
**Recommendations**
Update MapPress Maps for WordPress to version 2.97.4 or later.