I have received the following info from Google for various sites I am managing. They use different maps stacks but the issue seems the same.
"[Security Alert]: Polyfill.io Issue for Google Maps Platform users
29/06/2024, 01:16
Hello Google Maps Platform Customer,
We're writing to let you know that a security issue may be affecting websites using specific third-party libraries (including polyfill.io).Â
What happened
We have become aware of a security issue that may be affecting websites using specific third-party libraries (including polyfill.io). This issue can sometimes redirect visitors away from the intended website without website owner knowledge or permission, or potentially cause other malicious behavior. Many of the Maps JavaScript API samples in the Developer Documentation previously included a polyfill.io script declaration. We have removed this from those samples. If you have used the Maps JavaScript API samples that contain this declaration, we recommend removing the declaration.
What to do
Please see below to learn how to take action, if needed:
Investigate your website: Check your website's code to see if you're loading any compromised libraries (including polyfill.io).
Remove or replace the code: If you find compromised libraries, consider:
Hosting a clean, secure version of the code yourself
Switching to an alternative library or provider
Removing the library if you don’t need it
Re-deploy your code through your regular process.
For your reference, attached is a list of your projects where we have detected Maps Javascript API usage. Please check all sites associated with these projects."
Does anybody know more and how to solve that?