WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in GEO my WP

Advanced geolocation, mapping, and proximity search plugin. Geotag post types and BuddyPress members, and create advanced proximity search forms.

10Reported vulnerabilities
9.3Highest CVSS score
4.5.5.3Latest version
3,000+Active installs

What to do now

Update GEO my WP to 4.5.5.3 or later. 10 of these have a fixed version available. Updating resolves them.

Plugin last updated: July 16, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2026-15300 Critical 9.1 0.6% 0 to 4.5.4 (inclusive) 4.5.5 July 10, 2026
CVE-2026-52715 Critical 9.3 0.2% 4.5.5 and earlier 4.5.5.1 June 16, 2026
CVE-2026-9757 High 7.5 0.3% 0 to 4.5.5 (inclusive) 4.5.5.1 May 30, 2026
WF-5f732a77-fa34-402f-8ab4-a4273b7e0b13 High 7.5 4.5.4 and earlier 4.5.5 May 28, 2026
CVE-2023-52134 High 7.2 0.5% 4.0.2 and earlier 4.0.3 December 31, 2023
CVE-2024-47327 High 7.1 0.3% 0 to 4.5.0.3 (inclusive) 4.5.0.4 October 6, 2024
CVE-2024-54326 Medium 6.5 0.5% 0 to 4.5.0.4 (inclusive) 4.5.1 December 13, 2024
CVE-2023-5467 Medium 5.4 0.4% 4.0 and earlier 4.0.1 October 10, 2023
CVE-2024-32097 Medium 5.4 0.2% 4.1 and earlier 4.2 April 15, 2024
CVE-2026-15260 Medium 4.3 0.2% 4.5.5.2 and earlier 4.5.5.3 July 24, 2026

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.