Medium 5.3
2024-11-01< 1.8.4
CVE-2024-38690
Minimum safe version
1.8.4
Update to 1.8.4 or later to address 10 fixable vulnerabilities
CVE-2024-38690
CVE-2024-33941
iPanorama 360 – WordPress Virtual Tour Builder < 1.8.0 - Authenticated (Admin+) SQL injection
CVE-2023-5336
WordPress iPanorama 360 WordPress Virtual Tour Builder Plugin < 1.8.0 is vulnerable to SQL Injection
iPanorama 360 – WordPress Virtual Tour Builder <= 1.7.3 - Authenticated (Admin+) SQL injection
Multiple Plugins from Avirtum - Reflected Cross-Site Scripting
CVE-2022-4392
iPanorama 360 WordPress Virtual Tour Builder < 1.6.22 - Reflected Cross-Site Scripting
WordPress Download iPanorama 360 WordPress Virtual Tour Builder plugin <= 1.6.21 - Reflected Cross-Site Scripting (XSS) vulnerability