๐Ÿ” CVE Alert

CVE-2025-32248

UNKNOWN 0.0

WordPress SwiftXR (3D/AR/VR) Viewer plugin <= 1.0.7 - Cross Site Request Forgery (CSRF) vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Cross-Site Request Forgery (CSRF) vulnerability in SwiftXR SwiftXR (3D/AR/VR) Viewer swiftxr-3darvr-viewer allows Cross Site Request Forgery.This issue affects SwiftXR (3D/AR/VR) Viewer: from n/a through <= 1.0.7.

CWE CWE-352
Vendor swiftxr
Product swiftxr (3d/ar/vr) viewer
Published Apr 4, 2025
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for swiftxr swiftxr (3d/ar/vr) viewer

Be the first to know when new unknown vulnerabilities affecting swiftxr swiftxr (3d/ar/vr) viewer are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

SwiftXR / SwiftXR (3D/AR/VR) Viewer
0 โ‰ค 1.0.7

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/swiftxr-3darvr-viewer/vulnerability/wordpress-swiftxr-3d-ar-vr-viewer-plugin-1-0-7-cross-site-request-forgery-csrf-vulnerability?_s_id=cve

Credits

Affan Ali - @MuslimFromPK | Patchstack Bug Bounty Program