Vulnerability index

Browse CVEs

7,366 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Unclassified HIGH 7.1
CVE-2025-46524

Cross-Site Request Forgery (CSRF) vulnerability in stesvis WP Filter Post Category wp-filter-post-categories allows Stored XSS.This issue affects WP …

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46510

Cross-Site Request Forgery (CSRF) vulnerability in harrysudana Contact Form 7 Calendar cf7-calendar allows Stored XSS.This issue affects Contact Form…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46512

Cross-Site Request Forgery (CSRF) vulnerability in Shamim Hasan Custom Functions Plugin custom-functions allows Stored XSS.This issue affects Custom …

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46514

Cross-Site Request Forgery (CSRF) vulnerability in milat Milat jQuery Automatic Popup milat-jquery-automatic-popup allows Stored XSS.This issue affec…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46516

Cross-Site Request Forgery (CSRF) vulnerability in silencecm Twitter Card Generator twitter-card-generator allows Stored XSS.This issue affects Twitt…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46504

Cross-Site Request Forgery (CSRF) vulnerability in Olar Marius Vasaio QR Code vasaio-qr-code allows Stored XSS.This issue affects Vasaio QR Code: fro…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46506

Cross-Site Request Forgery (CSRF) vulnerability in Lora77 WpZon – Amazon Affiliate Plugin wpzon allows Reflected XSS.This issue affects WpZon – Amazo…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46507

Cross-Site Request Forgery (CSRF) vulnerability in ldrumm Unsafe Mimetypes unsafe-mimetypes allows Stored XSS.This issue affects Unsafe Mimetypes: fr…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46508

Cross-Site Request Forgery (CSRF) vulnerability in kasonzhao Advanced lazy load advanced-lazy-load allows Stored XSS.This issue affects Advanced lazy…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified MEDIUM 6.5
CVE-2025-46495

Cross-Site Request Forgery (CSRF) vulnerability in tomontoast Drop Caps drop-caps allows Stored XSS.This issue affects Drop Caps: from n/a through <=…

Mitigation only
Fix from $1,600 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46497

Cross-Site Request Forgery (CSRF) vulnerability in Navegg Navegg Analytics navegg allows Stored XSS.This issue affects Navegg Analytics: from n/a thr…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified MEDIUM 5.4
CVE-2025-46498

Cross-Site Request Forgery (CSRF) vulnerability in nghialuu Zalo Official Live Chat zalo-official-live-chat allows Cross Site Request Forgery.This is…

Mitigation only
Fix from $1,600 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46492

Cross-Site Request Forgery (CSRF) vulnerability in Pham Thanh Call Now PHT Blog call-now-coccoc-pht-blog allows Stored XSS.This issue affects Call No…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46465

Cross-Site Request Forgery (CSRF) vulnerability in John Weissberg Print Science Designer print-science-designer allows Stored XSS.This issue affects …

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46466

Cross-Site Request Forgery (CSRF) vulnerability in felixtz Modern Polls modern-polls allows Stored XSS.This issue affects Modern Polls: from n/a thro…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46450

Cross-Site Request Forgery (CSRF) vulnerability in x000x occupancyplan occupancyplan allows Stored XSS.This issue affects occupancyplan: from n/a thr…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46452

Cross-Site Request Forgery (CSRF) vulnerability in Olav Kolbu Google News allows Stored XSS. This issue affects Google News: from n/a through 2.5.1.

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46457

Cross-Site Request Forgery (CSRF) vulnerability in Ahsanullah Akanda Wp Custom CMS Block wp-custom-cms-block allows Stored XSS.This issue affects Wp …

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.4
CVE-2025-46439

Cross-Site Request Forgery (CSRF) vulnerability in Vladimir Prelovac Plugin Central plugin-central allows Path Traversal.This issue affects Plugin Ce…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46442

Cross-Site Request Forgery (CSRF) vulnerability in Casey Johnson Loan Calculator repayment-calculator allows Stored XSS.This issue affects Loan Calcu…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-46435

Cross-Site Request Forgery (CSRF) vulnerability in Yash Binani Time Based Greeting time-based-greeting allows Stored XSS.This issue affects Time Base…

Mitigation only
Fix from $1,950 2025-04-24
Unclassified HIGH 7.1
CVE-2025-39381

Cross-Site Request Forgery (CSRF) vulnerability in Kiotviet KiotViet Sync allows Stored XSS. This issue affects KiotViet Sync: from n/a through 1.8.4.

Mitigation only
Fix from $1,950 2025-04-24
Simple Calendar For Elementor HIGH 8.8
CVE-2025-46249

Cross-Site Request Forgery (CSRF) vulnerability in Michael Simple calendar for Elementor simple-calendar-for-elementor allows Cross Site Request Forg…

Fix: 1.6.5+
Fix from $1,950 2025-04-22
Vikrestaurants Table Reservations And Take Away HIGH 8.8
CVE-2025-46251

Cross-Site Request Forgery (CSRF) vulnerability in e4jvikwp VikRestaurants vikrestaurants allows Cross Site Request Forgery.This issue affects VikRes…

Fix: 1.4+
Fix from $1,950 2025-04-22
Recover Abandoned Cart For Woocommerce HIGH 8.8
CVE-2025-46243

Cross-Site Request Forgery (CSRF) vulnerability in sonalsinha21 Recover abandoned cart for WooCommerce recover-wc-abandoned-cart allows Cross Site Re…

Fix: 2.3+
Fix from $1,950 2025-04-22
Cm Ad Changer HIGH 8.8
CVE-2025-46245

Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Ad Changer cm-ad-changer allows Cross Site Request Forgery.This issue af…

Fix: 2.0.6+
Fix from $1,950 2025-04-22
Cm Answers HIGH 8.8
CVE-2025-46246

Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Answers cm-answers allows Cross Site Request Forgery.This issue affects …

Fix: 3.3.4+
Fix from $1,950 2025-04-22
Appointment Booking Calendar HIGH 8.8
CVE-2025-46241

Cross-Site Request Forgery (CSRF) vulnerability in codepeople Appointment Booking Calendar appointment-booking-calendar allows SQL Injection.This iss…

Fix: 1.3.93+
Fix from $1,950 2025-04-22
Affiliate Toolkit HIGH 8.8
CVE-2025-46231

Cross-Site Request Forgery (CSRF) vulnerability in SERVIT Software Solutions affiliate-toolkit affiliate-toolkit-starter allows Cross Site Request Fo…

Fix: 3.7.4+
Fix from $1,950 2025-04-22
Ds Java MEDIUM 6.5
CVE-2025-3843

A vulnerability was found in panhainan DS-Java 1.0. It has been classified as problematic. Affected is an unknown function. The manipulation leads to…

No fix yet
Fix from $1,600 2025-04-21