Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Pnp4nagios HIGH 8.8
CVE-2023-38349

PNP4Nagios through 81ebfc5 lacks CSRF protection in the AJAX controller. This affects 0.6.26.

Patch available
Fix from $1,950 2023-07-15
Archer HIGH 8.0
CVE-2023-32761

Cross Site Request Forgery (CSRF) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacke…

Fix: 6.12.0.6+
Fix from $1,950 2023-07-14
Wtc C1167gc B Firmware HIGH 8.8
CVE-2023-37562

Cross-site request forgery (CSRF) vulnerability in exists in WTC-C1167GC-B v1.17 and earlier, and WTC-C1167GC-W v1.17 and earlier. If a user views a …

Fix: after 1.17
Fix from $1,950 2023-07-13
Benchmark Evaluator HIGH 8.8
CVE-2023-37962

A cross-site request forgery (CSRF) vulnerability in Jenkins Benchmark Evaluator Plugin 1.0.1 and earlier allows attackers to connect to an attacker-…

Fix: after 1.0.1
Fix from $1,950 2023-07-12
Elasticbox Ci HIGH 8.8
CVE-2023-37964

A cross-site request forgery (CSRF) vulnerability in Jenkins ElasticBox CI Plugin 5.0.1 and earlier allows attackers to connect to an attacker-specif…

Fix: after 5.0.1
Fix from $1,950 2023-07-12
Mabl MEDIUM 6.5
CVE-2023-37952

A cross-site request forgery (CSRF) vulnerability in Jenkins mabl Plugin 0.0.46 and earlier allows attackers to connect to an attacker-specified URL …

Fix: after 0.0.46
Fix from $1,600 2023-07-12
Test Results Aggregator MEDIUM 6.5
CVE-2023-37955

A cross-site request forgery (CSRF) vulnerability in Jenkins Test Results Aggregator Plugin 1.2.13 and earlier allows attackers to connect to an atta…

Fix: after 1.2.13
Fix from $1,600 2023-07-12
Pipeline Restful Api HIGH 8.8
CVE-2023-37957

A cross-site request forgery (CSRF) vulnerability in Jenkins Pipeline restFul API Plugin 0.11 and earlier allows attackers to connect to an attacker-…

Fix: after 0.11
Fix from $1,950 2023-07-12
Sumologic Publisher HIGH 8.8
CVE-2023-37958

A cross-site request forgery (CSRF) vulnerability in Jenkins Sumologic Publisher Plugin 2.2.1 and earlier allows attackers to connect to an attacker-…

Fix: after 2.2.1
Fix from $1,950 2023-07-12
Assembla HIGH 8.8
CVE-2023-37961

A cross-site request forgery (CSRF) vulnerability in Jenkins Assembla Auth Plugin 1.14 and earlier allows attackers to trick users into logging in to…

Fix: after 1.14
Fix from $1,950 2023-07-12
Armember HIGH 8.8
CVE-2023-3011

The ARMember plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.0.5. This is due to missing or inco…

Fix: 4.0.6+
Fix from $1,950 2023-07-12
Suitecrm HIGH 8.8
CVE-2023-3627

Cross-Site Request Forgery (CSRF) in GitHub repository salesagility/suitecrm-core prior to 8.3.1.

Fix: 8.3.1+
Fix from $1,950 2023-07-11
Pbx HIGH 8.1
CVE-2023-37596

Cross Site Request Forgery (CSRF) vulnerability in issabel-pbx v.4.0.0-6 allows a remote attacker to cause a denial of service via a crafted script t…

No fix yet
Fix from $1,950 2023-07-11
Pbx HIGH 8.1
CVE-2023-37597

Cross Site Request Forgery (CSRF) vulnerability in issabel-pbx v.4.0.0-6 allows a remote attacker to cause a denial of service via the delete user gr…

No fix yet
Fix from $1,950 2023-07-11
Enhanced Him CRITICAL 9.6
CVE-2023-2746

The Rockwell Automation Enhanced HIM software contains an API that the application uses that is not protected sufficiently and uses incorrect Cross…

No fix yet
Fix from $2,300 2023-07-11
Template Debugger HIGH 8.8
CVE-2023-35773

Cross-Site Request Forgery (CSRF) vulnerability in Danny Hearnah - ChubbyNinjaa Template Debugger plugin <= 3.1.2 versions.

Fix: after 3.1.2
Fix from $1,950 2023-07-11
Quiz Expert Easy Quiz Maker\, Exam And Test Manager HIGH 8.8
CVE-2023-36522

Cross-Site Request Forgery (CSRF) vulnerability in WePupil Quiz Expert plugin <= 1.5.0 versions.

Fix: after 1.5.0
Fix from $1,950 2023-07-11
Wordpress Learning Management System HIGH 8.8
CVE-2023-36690

Cross-Site Request Forgery (CSRF) vulnerability in VibeThemes WPLMS theme <= 4.900 versions.

Fix: after 4.900
Fix from $1,950 2023-07-11
Worthy MEDIUM 6.5
CVE-2023-24417

Cross-Site Request Forgery (CSRF) vulnerability in tiggersWelt.Net Worthy plugin <= 1.6.5-6497609 versions.

Fix: after 1.6.5-6497609
Fix from $1,600 2023-07-11
Button Generator MEDIUM 6.5
CVE-2023-25443

Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Button Generator – easily Button Builder plugin <= 2.3.5 versions.

Fix: after 2.3.5
Fix from $1,600 2023-07-11
Better Robots.txt MEDIUM 6.5
CVE-2023-25706

Cross-Site Request Forgery (CSRF) vulnerability in Pagup WordPress Robots.Txt optimization plugin <= 1.4.5 versions.

Fix: after 1.4.5
Fix from $1,600 2023-07-11
Mycurator Content Curation MEDIUM 6.5
CVE-2023-32104

Cross-Site Request Forgery (CSRF) vulnerability in Mark Tilly MyCurator Content Curation plugin <= 3.74 versions.

Fix: after 3.74
Fix from $1,600 2023-07-11
Disable Wordpress Update Notifications And Auto Update Email Notifications MEDIUM 6.5
CVE-2023-34029

Cross-Site Request Forgery (CSRF) vulnerability in Prem Tiwari Disable WordPress Update Notifications and auto-update Email Notifications plugin <= 2…

Fix: after 2.3.3
Fix from $1,600 2023-07-11
Stock Manager For Woocommerce HIGH 8.8
CVE-2023-35091

Cross-Site Request Forgery (CSRF) vulnerability in StoreApps Stock Manager for WooCommerce plugin <= 2.10.0 versions.

Fix: after 2.10.0
Fix from $1,950 2023-07-11
Layer Slider MEDIUM 6.5
CVE-2023-23671

Cross-Site Request Forgery (CSRF) vulnerability in Muneeb Layer Slider plugin <= 1.1.9.7 versions.

Fix: after 1.1.9.7
Fix from $1,600 2023-07-11
Wordpress Nextgen Galleryview MEDIUM 6.5
CVE-2023-34185

Cross-Site Request Forgery (CSRF) vulnerability in John Brien WordPress NextGen GalleryView plugin <= 0.5.5 versions.

Fix: after 0.5.5
Fix from $1,600 2023-07-11
All Bootstrap Blocks MEDIUM 6.5
CVE-2023-35047

Cross-Site Request Forgery (CSRF) vulnerability in AREOI All Bootstrap Blocks plugin <= 1.3.6 versions.

Fix: after 1.3.6
Fix from $1,600 2023-07-11
Recent Posts Slider MEDIUM 6.5
CVE-2023-35778

Cross-Site Request Forgery (CSRF) vulnerability in Neha Goel Recent Posts Slider plugin <= 1.1 versions.

Fix: after 1.1
Fix from $1,600 2023-07-11
Galleria MEDIUM 6.5
CVE-2023-35780

Cross-Site Request Forgery (CSRF) vulnerability in Andy Whalen Galleria plugin <= 1.0.3 versions.

Fix: after 1.0.3
Fix from $1,600 2023-07-11
Menubar MEDIUM 6.5
CVE-2023-36687

Cross-Site Request Forgery (CSRF) vulnerability in Andrea Tarantini Menubar plugin <= 5.8.2 versions.

Fix: after 5.8.2
Fix from $1,600 2023-07-11