WordPress Super Store Finder Plugin <= 7.6 - Reflected Cross Site Scripting (XSS) Vulnerability
Super Store Finder
Vulnerabilities 16Slug superstorefinder-wp
Minimum safe version
7.8
Update to 7.8 or later to address 15 fixable vulnerabilities
⚠ 1 vulnerability has no fix
N/A
2025-08-20< 7.7
N/A
2025-08-21< 7.7
Super Store Finder <= 7.6 - Reflected Cross-Site Scripting
Medium 4.3 Unfixed
2025-10-29≤ 7.5
CVE-2025-58939
Critical 9.3
2025-08-14< 7.6
CVE-2025-52720
High 7.5
2025-09-09< 7.8
CVE-2025-47571
Critical 9.3
2025-05-19< 7.5
CVE-2025-39445
High 8.2
2025-02-10< 7.1
WordPress Super Store Finder Plugin <= 7.0 is vulnerable to SQL Injection
High 7.1
2024-09-17< 6.9.8
CVE-2024-43975
Critical 9.3
2024-09-17< 6.9.8
CVE-2024-43976
Critical 9.3
2024-09-17< 6.9.8
CVE-2024-43978
Medium 5.3
2023-09-19< 6.9.4
CVE-2023-5054
N/A
< 6.2
SuperStoreFinder Plugins - Unauthenticated Arbitrary File Upload
N/A
< 6.5
SuperStoreFinder & SuperInteractiveMaps - Unauthenticated SQL Injections
N/A
2021-03-08< 6.5
Super Store Finder <= 6.4, Super Interactive Maps <= 2.1 - SQL Injection
N/A
2020-10-21< 6.2
WordPress Super Store Finder premium plugin <= 6.1 - Unauthenticated Arbitrary File Upload vulnerability
N/A
2021-03-08< 6.4
WordPress Super Store Finder premium plugin <= 6.3 - Unauthenticated SQL Injection (SQLi) vulnerability