Input validation vulnerability in WP VR – 360 Panorama and Free Virtual Tour Builder For WordPress 8.5.14

The WP VR plugin for WordPress has a security issue that allows attackers to inject harmful code into pages. This can happen because the plugin does not properly clean up user input and output. This vulnerability affects versions 8.5.14 and below. Attackers who have contributor-level access or higher can exploit this vulnerability to execute malicious scripts whenever a user visits a page with the injected code.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.