CVE-2023-40663: WordPress WP VR Plugin <= 8.3.4 is vulnerable to Cross Site Scripting (XSS)
Published Sep 27, 2023
·Updated
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Rextheme WP VR plugin <= 8.3.4 versions.
Affected Software
1 affected component
Rextheme Wp Vr Wordpress<=8.3.4
Remediation
Information
Update to 8.3.5 or a higher version.
Event History
Sep 27, 2023
CVE Published
via MITRE·05:40 AM
Data Sourced
via MITRE·05:40 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-40663?
The severity of CVE-2023-40663 is high.
2
What is the affected software of CVE-2023-40663?
The affected software of CVE-2023-40663 is Rextheme WP VR plugin version <= 8.3.4.
3
How can I fix CVE-2023-40663?
To fix CVE-2023-40663, update Rextheme WP VR plugin to a version higher than 8.3.4.
4
What is the CWE of CVE-2023-40663?
The CWE of CVE-2023-40663 is CWE-79 (Cross-site Scripting).
5
Where can I find more information about CVE-2023-40663?
For more information about CVE-2023-40663, refer to the following link: [CVE-2023-40663 Information](https://patchstack.com/database/vulnerability/wpvr/wordpress-wp-vr-plugin-8-3-4-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve)