Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Youtube Video Gallery HIGH 8.8
CVE-2023-40558

Cross-Site Request Forgery (CSRF) vulnerability in eMarket Design YouTube Video Gallery by YouTube Showcase plugin <= 3.3.5 versions.

Fix: 3.3.6+
Fix from $1,950 2023-10-03
Nxlog Manager MEDIUM 6.5
CVE-2023-32791

Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to manipulate and delete use…

Mitigation only
Fix from $1,600 2023-10-03
Nxlog Manager MEDIUM 6.5
CVE-2023-32792

Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to eliminate roles within th…

Mitigation only
Fix from $1,600 2023-10-03
Fraud Prevention For Woocommerce MEDIUM 6.5
CVE-2023-39159

Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Fraud Prevention For Woocommerce plugin <= 2.1.5 versions.

Fix: after 2.1.5
Fix from $1,600 2023-10-03
Wp Pipes MEDIUM 6.5
CVE-2023-40009

Cross-Site Request Forgery (CSRF) vulnerability in ThimPress WP Pipes plugin <= 1.4.0 versions.

Fix: after 1.4.0
Fix from $1,600 2023-10-03
Easy Cookie Law MEDIUM 6.5
CVE-2023-40198

Cross-Site Request Forgery (CSRF) vulnerability in Antsanchez Easy Cookie Law plugin <= 3.1 versions.

Fix: after 3.1
Fix from $1,600 2023-10-03
Wp Like Button HIGH 8.8
CVE-2023-40199

Cross-Site Request Forgery (CSRF) vulnerability in CRUDLab WP Like Button plugin <= 1.7.0 versions.

Fix: after 1.7.0
Fix from $1,950 2023-10-03
Futurio Extra HIGH 8.8
CVE-2023-40201

Cross-Site Request Forgery (CSRF) vulnerability in FuturioWP Futurio Extra plugin <= 1.8.4 versions leads to activation of arbitrary plugin.

Fix: after 1.8.4
Fix from $1,950 2023-10-03
Wp Html Mail HIGH 8.8
CVE-2023-40202

Cross-Site Request Forgery (CSRF) vulnerability in Hannes Etzelstorfer // codemiq WP HTML Mail plugin <= 3.4.1 versions.

Fix: after 3.4.1
Fix from $1,950 2023-10-03
Product Attachment For Woocommerce MEDIUM 6.5
CVE-2023-40212

Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Product Attachment for WooCommerce plugin <= 2.1.8 versions.

Fix: after 2.1.8
Fix from $1,600 2023-10-03
Meks Audio Player HIGH 8.8
CVE-2023-25989

Cross-Site Request Forgery (CSRF) vulnerability in Meks Video Importer, Meks Time Ago, Meks ThemeForest Smart Widget, Meks Smart Author Widget, Meks …

Fix: after 2.1.3
Fix from $1,950 2023-10-03
Wp Testimonials HIGH 8.8
CVE-2023-2830

Cross-Site Request Forgery (CSRF) vulnerability in Trustindex.Io WP Testimonials plugin <= 1.4.2 versions.

Fix: after 1.4.2
Fix from $1,950 2023-10-03
Sign Up Sheets HIGH 8.8
CVE-2023-39165

Cross-Site Request Forgery (CSRF) vulnerability in Fetch Designs Sign-up Sheets plugin <= 2.2.8 versions.

Fix: after 2.2.8
Fix from $1,950 2023-10-03
Photo Gallery HIGH 8.8
CVE-2023-39917

Cross-Site Request Forgery (CSRF) vulnerability in Photo Gallery Team Photo Gallery by Ays – Responsive Image Gallery plugin <= 5.2.6 versions.

Fix: after 5.2.6
Fix from $1,950 2023-10-03
The Post Grid HIGH 8.8
CVE-2023-39923

Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 7.2.7 versions.

Fix: after 7.2.7
Fix from $1,950 2023-10-03
Header Footer Code Manager HIGH 8.8
CVE-2023-39989

Cross-Site Request Forgery (CSRF) vulnerability in 99robots Header Footer Code Manager plugin <= 1.1.34 versions.

Fix: after 1.1.34
Fix from $1,950 2023-10-03
Sb Child List HIGH 8.8
CVE-2023-40210

Cross-Site Request Forgery (CSRF) vulnerability in Sean Barton (Tortoise IT) SB Child List plugin <= 4.5 versions.

Fix: after 4.5
Fix from $1,950 2023-10-03
Oxygen HIGH 8.8
CVE-2022-46841

Cross-Site Request Forgery (CSRF) vulnerability in Soflyy Oxygen Builder plugin <= 4.4 versions.

Fix: 4.4+
Fix from $1,950 2023-10-03
Pandora Fms HIGH 7.1
CVE-2023-24518

A Cross-site Request Forgery (CSRF) vulnerability in Pandora FMS allows an attacker to force authenticated users to send a request to a web applicati…

Fix: after 767
Fix from $1,950 2023-10-03
Wp Tell A Friend Popup Form HIGH 8.8
CVE-2023-25463

Cross-Site Request Forgery (CSRF) vulnerability in Gopi Ramasamy WP tell a friend popup form plugin <= 7.1 versions.

Fix: after 7.1
Fix from $1,950 2023-10-03
Perelink Pro HIGH 8.8
CVE-2023-37990

Cross-Site Request Forgery (CSRF) vulnerability in Mike Perelink Pro plugin <= 2.1.4 versions.

Fix: after 2.1.4
Fix from $1,950 2023-10-03
Mobile Address Bar Changer HIGH 8.8
CVE-2023-38390

Cross-Site Request Forgery (CSRF) vulnerability in Anshul Labs Mobile Address Bar Changer plugin <= 3.0 versions.

Fix: after 3.0
Fix from $1,950 2023-10-03
Google Map Shortcode HIGH 8.8
CVE-2023-38396

Cross-Site Request Forgery (CSRF) vulnerability in Alain Gonzalez plugin <= 3.1.2 versions.

Fix: after 3.1.2
Fix from $1,950 2023-10-03
Tablooa HIGH 8.8
CVE-2023-38398

Cross-Site Request Forgery (CSRF) vulnerability in Taboola plugin <= 2.0.1 versions.

Fix: after 2.0.1
Fix from $1,950 2023-10-03
Optimonk\ HIGH 8.8
CVE-2023-37891

Cross-Site Request Forgery (CSRF) vulnerability in OptiMonk OptiMonk: Popups, Personalization & A/B Testing plugin <= 2.0.4 versions.

Fix: 2.0.5+
Fix from $1,950 2023-10-03
Wp Emoji One HIGH 8.8
CVE-2023-37991

Cross-Site Request Forgery (CSRF) vulnerability in Monchito.Net WP Emoji One plugin <= 0.6.0 versions.

Fix: after 0.6.0
Fix from $1,950 2023-10-03
Smarty For Wordpress HIGH 8.8
CVE-2023-37992

Cross-Site Request Forgery (CSRF) vulnerability in PressPage Entertainment Inc. Smarty for WordPress plugin <= 3.1.35 versions.

Fix: after 3.1.35
Fix from $1,950 2023-10-03
Gtmetrix HIGH 8.8
CVE-2023-37996

Cross-Site Request Forgery (CSRF) vulnerability in GTmetrix GTmetrix for WordPress plugin <= 0.4.7 versions.

Fix: 0.4.8+
Fix from $1,950 2023-10-03
Disabler HIGH 8.8
CVE-2023-37998

Cross-Site Request Forgery (CSRF) vulnerability in Saas Disabler allows Cross Site Request Forgery.This issue affects Disabler: from n/a through 3.0.…

Fix: after 3.0.3
Fix from $1,950 2023-10-03
Wp Flybox HIGH 8.8
CVE-2023-38381

Cross-Site Request Forgery (CSRF) vulnerability in Cyle Conoly WP-FlyBox plugin <= 6.46 versions.

Fix: after 6.46
Fix from $1,950 2023-10-03