[Solved] Vulnerability found in 2.2.7

Defender Pro security plugin is continually picking this up over the last few updates:

#WordPress wpForo plugin <= 2.2.7 - Cross Site Request Forgery (CSRF) on Sign-out vulnerability
-Vulnerability type: Cross Site Request Forgery (CSRF)


Anything to worry about?

Real issue or not, if you have

Ninja Fireall for Wordpress, correctly configured

there is nothing to worry about. BE PROACTIVE.

I have server-side WAF as well as the Defender Pro firewall. 

I think another might be overkill!

This is a false positive report. This issue has been fixed in 2.2.3 version, however the problem report don't response to our emails and don't remove it. So this is a outdated wrong information.

I'll hit 'ignore' on the next scan.