First published: Wed Mar 15 2023(Updated: )
Cross-Site Request Forgery (CSRF) vulnerability in Rextheme WP VR – 360 Panorama and Virtual Tour Builder For WordPress plugin <= 8.2.7 versions.
Credit: audit@patchstack.com audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Rextheme WP VR | <8.2.8 | |
Coderex WP VR | <8.2.8 |
Update to 8.2.8 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this CSRF vulnerability is CVE-2023-25708.
The severity of CVE-2023-25708 is high with a severity value of 8.8.
The Rextheme WP VR - 360 Panorama and Virtual Tour Builder For WordPress plugin versions <= 8.2.7 are affected by CVE-2023-25708.
To fix CVE-2023-25708, update the Rextheme WP VR - 360 Panorama and Virtual Tour Builder For WordPress plugin to version 8.2.8 or higher.
Yes, you can find more information about CVE-2023-25708 at the following reference link: [https://patchstack.com/database/vulnerability/wpvr/wordpress-wp-vr-360-panorama-and-virtual-tour-builder-plugin-8-2-7-cross-site-request-forgery-csrf-vulnerability?_s_id=cve](https://patchstack.com/database/vulnerability/wpvr/wordpress-wp-vr-360-panorama-and-virtual-tour-builder-plugin-8-2-7-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)