9.6
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Description
Cross-Site Request Forgery (CSRF) vulnerability in webandprint AR For WordPress allows Upload a Web Shell to a Web Server. This issue affects AR For WordPress: from n/a through 7.98.
Basic Information
ID
CVE-2025-60156
Source
Patchstack
Published
Sep 26, 2025 at 08:31
Affected Product
Vendor
webandprint
Product
AR For WordPress
Version
n/a
Affected Versions
webandprint AR For WordPress n/a