Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Original Texts Yandex Webmaster HIGH 8.8
CVE-2023-46775

Cross-Site Request Forgery (CSRF) vulnerability in Djo Original texts Yandex WebMaster plugin <= 1.18 versions.

Fix: after 1.18
Fix from $1,950 2023-11-06
Login Screen Manager HIGH 8.8
CVE-2023-47182

Cross-Site Request Forgery (CSRF) leading to a Stored Cross-Site Scripting (XSS) vulnerability in Nazmul Hossain Nihal Login Screen Manager plugin <=…

Fix: after 3.5.2
Fix from $1,950 2023-11-06
Video Carousel Slider With Lightbox MEDIUM 5.4
CVE-2023-5945

The video carousel slider with lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0. This is due to missing or in…

Patch available
Fix from $1,600 2023-11-03
Txseries For Multiplatforms HIGH 8.8
CVE-2023-42027

IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-site request forgery which coul…

Patch available
Fix from $1,950 2023-11-03
Pkp Web Application Library HIGH 8.8
CVE-2023-5898

Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.

Fix: 3.3.0-16+
Fix from $1,950 2023-11-01
Pkp Web Application Library HIGH 8.8
CVE-2023-5899

Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.

Fix: 3.3.0-16+
Fix from $1,950 2023-11-01
Pkp Web Application Library HIGH 8.8
CVE-2023-5893

Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.

Fix: 3.3.0-16+
Fix from $1,950 2023-11-01
Customlocale HIGH 8.8
CVE-2023-5897

Cross-Site Request Forgery (CSRF) in GitHub repository pkp/customLocale prior to 1.2.0-1.

Fix: 1.2.0-1+
Fix from $1,950 2023-11-01
Frigate MEDIUM 6.8
CVE-2023-45670

Frigate is an open source network video recorder. Prior to version 0.13.0 Beta 3, the `config/save` and `config/set` endpoints of Frigate do not impl…

Fix: after 0.13.0
Fix from $1,600 2023-10-30
Douhaocms HIGH 8.8
CVE-2023-42323

Cross Site Request Forgery (CSRF) vulnerability in DouHaocms v.3.3 allows a remote attacker to execute arbitrary code via the adminAction.class.php f…

No fix yet
Fix from $1,950 2023-10-30
Basercms CRITICAL 9.8
CVE-2023-43649

baserCMS is a website development framework. Prior to version 4.8.0, there is a cross site request forgery vulnerability in the content preview featu…

Fix: 4.8.0+
Fix from $2,300 2023-10-30
Thumbnail Slider With Lightbox HIGH 8.8
CVE-2023-5820

The Thumbnail Slider With Lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0. This is due to missing or incorre…

Patch available
Fix from $1,950 2023-10-27
Biz HIGH 8.8
CVE-2023-46375

ZenTao Biz version 4.1.3 and before is vulnerable to Cross Site Request Forgery (CSRF).

Fix: after 4.1.3
Fix from $1,950 2023-10-27
Icecms MEDIUM 6.5
CVE-2023-42188

IceCMS v2.0.1 is vulnerable to Cross Site Request Forgery (CSRF).

No fix yet
Fix from $1,600 2023-10-27
Analog Fm Transmitter Exc5000gx Firmware HIGH 8.8
CVE-2023-45317

The application interface allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. …

Mitigation only
Fix from $1,950 2023-10-26
Wp Knowledgebase HIGH 8.8
CVE-2023-5802

Cross-Site Request Forgery (CSRF) vulnerability in Mihai Iova WordPress Knowledge base & Documentation Plugin – WP Knowledgebase plugin <= 1.3.4 vers…

Fix: after 1.3.4
Fix from $1,950 2023-10-26
Simple Calendar HIGH 8.8
CVE-2023-46189

Cross-Site Request Forgery (CSRF) vulnerability in Simple Calendar – Google Calendar Plugin <= 3.2.5 versions.

Fix: 3.2.6+
Fix from $1,950 2023-10-25
Novo Map\ HIGH 8.8
CVE-2023-46190

Cross-Site Request Forgery (CSRF) vulnerability in Novo-media Novo-Map : your WP posts on custom google maps plugin <= 1.1.2 versions.

Fix: after 1.1.2
Fix from $1,950 2023-10-25
Open Graph Metabox HIGH 8.8
CVE-2023-46191

Cross-Site Request Forgery (CSRF) vulnerability in Niels van Renselaar Open Graph Metabox plugin <= 1.4.4 versions.

Fix: after 1.4.4
Fix from $1,950 2023-10-25
Internal Link Building HIGH 8.8
CVE-2023-46193

Cross-Site Request Forgery (CSRF) vulnerability in Internet Marketing Ninjas Internal Link Building plugin <= 1.2.3 versions.

Fix: after 1.2.3
Fix from $1,950 2023-10-25
Appointment Calendar HIGH 8.8
CVE-2023-46198

Cross-Site Request Forgery (CSRF) vulnerability in Scientech It Solution Appointment Calendar plugin <= 2.9.6 versions.

Fix: after 2.9.6
Fix from $1,950 2023-10-25
Auto Login New User After Registration HIGH 8.8
CVE-2023-46202

Cross-Site Request Forgery (CSRF) vulnerability in Jeff Sherk Auto Login New User After Registration plugin <= 1.9.6 versions.

Fix: after 1.9.6
Fix from $1,950 2023-10-25
Duplicate Theme HIGH 8.8
CVE-2023-46204

Cross-Site Request Forgery (CSRF) vulnerability in Muller Digital Inc. Duplicate Theme plugin <= 0.1.6 versions.

Fix: after 0.1.6
Fix from $1,950 2023-10-25
Wp Radio HIGH 8.8
CVE-2023-46150

Cross-Site Request Forgery (CSRF) vulnerability in WP Military WP Radio plugin <= 3.1.9 versions.

Fix: after 3.1.9
Fix from $1,950 2023-10-25
Product Category Tree HIGH 8.8
CVE-2023-46151

Cross-Site Request Forgery (CSRF) vulnerability in AWESOME TOGI Product Category Tree plugin <= 2.5 versions.

Fix: after 2.5
Fix from $1,950 2023-10-25
Wolf Wordpress Posts Bulk Editor And Products Manager Professional HIGH 8.8
CVE-2023-46152

Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professional plugin <= 1.0.7.1 versions.

Fix: 1.0.7.2+
Fix from $1,950 2023-10-25
Wp Ultimate Review HIGH 8.8
CVE-2023-46085

Cross-Site Request Forgery (CSRF) vulnerability in Wpmet Wp Ultimate Review plugin <= 2.2.4 versions.

Fix: after 2.2.4
Fix from $1,950 2023-10-22
Userback HIGH 8.8
CVE-2023-46089

Cross-Site Request Forgery (CSRF) vulnerability in Lee Le @ Userback Userback plugin <= 1.0.13 versions.

Fix: after 1.0.13
Fix from $1,950 2023-10-22
Smooth Scroll Links HIGH 8.8
CVE-2023-46095

Cross-Site Request Forgery (CSRF) vulnerability in Chetan Gole Smooth Scroll Links [SSL] plugin <= 1.1.0 versions.

Fix: after 1.1.0
Fix from $1,950 2023-10-22
Wc Serial Numbers HIGH 8.8
CVE-2023-46078

Cross-Site Request Forgery (CSRF) vulnerability in PluginEver WC Serial Numbers plugin <= 1.6.3 versions.

Fix: after 1.6.3
Fix from $1,950 2023-10-21