What is CVE-2026-28144?
An "Insertion of Sensitive Information Into Sent Data" vulnerability has been discovered in the Flipper Code WP Maps plugin. This flaw allows an attacker to retrieve embedded sensitive data from the information sent by the plugin. All versions of WP Maps from n/a through 4.9.6 are affected.
Azərbaycanca: Flipper Code WP Maps plaginində "Insertion of Sensitive Information Into Sent Data" zəifliyi aşkar edilib. Bu boşluq təcavüzkara göndərilən məlumatların içərisində həssas məlumatları əldə etməyə imkan verir. WP Maps-in n/a-dan 4.9.6 versiyasına qədər olan bütün versiyaları təsirlənir.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
Which plugin is affected by CVE-2026-28144?
This vulnerability affects the Flipper Code WP Maps plugin.
Which versions of the WP Maps plugin are vulnerable to CVE-2026-28144?
All versions of WP Maps from n/a through 4.9.6 are vulnerable.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.