CVE-2023-25708: WordPress WP VR – 360 Panorama and Virtual Tour Builder For WordPress Plugin <= 8.2.7 is vulnerable to Cross Site Request Forgery (CSRF)
Cross-Site Request Forgery (CSRF) vulnerability in Rextheme WP VR – 360 Panorama and Virtual Tour Builder For WordPress plugin <= 8.2.7 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID of this CSRF vulnerability?
The vulnerability ID of this CSRF vulnerability is CVE-2023-25708.
What is the severity of CVE-2023-25708?
The severity of CVE-2023-25708 is high with a severity value of 8.8.
Which software is affected by CVE-2023-25708?
The Rextheme WP VR - 360 Panorama and Virtual Tour Builder For WordPress plugin versions <= 8.2.7 are affected by CVE-2023-25708.
How can I fix CVE-2023-25708?
To fix CVE-2023-25708, update the Rextheme WP VR - 360 Panorama and Virtual Tour Builder For WordPress plugin to version 8.2.8 or higher.
Is there any additional information available about CVE-2023-25708?
Yes, you can find more information about CVE-2023-25708 at the following reference link: [https://patchstack.com/database/vulnerability/wpvr/wordpress-wp-vr-360-panorama-and-virtual-tour-builder-plugin-8-2-7-cross-site-request-forgery-csrf-vulnerability?_s_id=cve](https://patchstack.com/database/vulnerability/wpvr/wordpress-wp-vr-360-panorama-and-virtual-tour-builder-plugin-8-2-7-cross-site-request-forgery-csrf-vulnerability?_s_id=cve)