Vulnerability index

Browse CVEs

7,366 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
My Bbs MEDIUM 6.5
CVE-2025-3808

A vulnerability has been found in zhenfeng13 My-BBS 1.0 and classified as problematic. This vulnerability affects unknown code. The manipulation lead…

No fix yet
Fix from $1,600 2025-04-19
Unclassified HIGH 7.5
CVE-2025-2111

The Insert Headers And Footers plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.1. This is …

Mitigation only
Fix from $1,950 2025-04-19
Flaskblog MEDIUM 6.5
CVE-2025-28101

An arbitrary file deletion vulnerability in the /post/{postTitle} component of flaskBlog v2.6.1 allows attackers to delete article titles created by …

No fix yet
Fix from $1,600 2025-04-17
Commercify MEDIUM 6.3
CVE-2025-29722

A CSRF vulnerability in Commercify v1.0 allows remote attackers to perform unauthorized actions on behalf of authenticated users. The issue exists du…

No fix yet
Fix from $1,600 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39455

Cross-Site Request Forgery (CSRF) vulnerability in IP2Location IP2Location Variables ip2location-variables allows Reflected XSS.This issue affects IP…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39440

Cross-Site Request Forgery (CSRF) vulnerability in Rajesh Broken Links Remover broken-links-remover allows Stored XSS.This issue affects Broken Links…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39441

Cross-Site Request Forgery (CSRF) vulnerability in swedish boy Dashboard Notepads dashboard-notepads allows Stored XSS.This issue affects Dashboard N…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39442

Cross-Site Request Forgery (CSRF) vulnerability in MessageMetric Review Wave – Google Places Reviews review-wave-google-places-reviews allows Stored …

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39430

Cross-Site Request Forgery (CSRF) vulnerability in Alexander Rauscha mLanguage mlanguage allows Stored XSS.This issue affects mLanguage: from n/a thr…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39431

Cross-Site Request Forgery (CSRF) vulnerability in Aaron Forgue Amazon Showcase WordPress Plugin amazon-showcase-wordpress-widget allows Stored XSS.T…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39433

Cross-Site Request Forgery (CSRF) vulnerability in beke_ro Bknewsticker bknewsticker allows Stored XSS.This issue affects Bknewsticker: from n/a thro…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39435

Cross-Site Request Forgery (CSRF) vulnerability in davidfcarr My Marginalia my-marginalia allows Stored XSS.This issue affects My Marginalia: from n/…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39422

Cross-Site Request Forgery (CSRF) vulnerability in PResponsive WP Social Bookmarking wp-social-bookmarking allows Stored XSS.This issue affects WP So…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39423

Cross-Site Request Forgery (CSRF) vulnerability in Jenst Add to Header add-to-header allows Stored XSS.This issue affects Add to Header: from n/a thr…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39424

Cross-Site Request Forgery (CSRF) vulnerability in simplemaps Simple Maps interactive-maps allows Stored XSS.This issue affects Simple Maps: from n/a…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39414

Cross-Site Request Forgery (CSRF) vulnerability in Mike spam-stopper spam-stopper allows Stored XSS.This issue affects spam-stopper: from n/a through…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39415

Cross-Site Request Forgery (CSRF) vulnerability in Jayesh Parejiya Social Media Links social-media-links allows Stored XSS.This issue affects Social …

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39416

Cross-Site Request Forgery (CSRF) vulnerability in Ichi translit it! translit-it allows Stored XSS.This issue affects translit it!: from n/a through …

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39417

Cross-Site Request Forgery (CSRF) vulnerability in Eslam Mahmoud Redirect wordpress to welcome or landing page redirect-to-welcome-or-landing-page al…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39418

Cross-Site Request Forgery (CSRF) vulnerability in ajayver RSS Manager rss-manager allows Stored XSS.This issue affects RSS Manager: from n/a through…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39419

Cross-Site Request Forgery (CSRF) vulnerability in David Miller Revision Diet revision-diet allows Stored XSS.This issue affects Revision Diet: from …

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-39421

Cross-Site Request Forgery (CSRF) vulnerability in Mustafa KUCUK WP Sticky Side Buttons wp-sticky-side-buttons allows Stored XSS.This issue affects W…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-32655

Cross-Site Request Forgery (CSRF) vulnerability in DevriX Restrict User Registration restrict-user-registration allows Stored XSS.This issue affects …

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-32606

Cross-Site Request Forgery (CSRF) vulnerability in Deepak Khokhar Listings for Buildium listings-for-buildium allows Stored XSS.This issue affects Li…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-32545

Cross-Site Request Forgery (CSRF) vulnerability in SOFTAGON WooCommerce Products without featured images woocommerce-products-without-featured-images…

Mitigation only
Fix from $1,950 2025-04-17
Unclassified HIGH 7.1
CVE-2025-32546

Cross-Site Request Forgery (CSRF) vulnerability in gtlwpdev All push notification for WP all-push-notification allows Reflected XSS.This issue affect…

Mitigation only
Fix from $1,950 2025-04-17
Woocommerce Social Login HIGH 8.8
CVE-2025-39472

Cross-Site Request Forgery (CSRF) vulnerability in wpweb WooCommerce Social Login woo-social-login allows Cross Site Request Forgery.This issue affec…

Fix: 2.8.3+
Fix from $1,950 2025-04-16
Unclassified CRITICAL 9.6
CVE-2025-39601

Cross-Site Request Forgery (CSRF) vulnerability in WPFactory Custom CSS, JS & PHP custom-css allows Remote Code Inclusion.This issue affects Custom C…

Mitigation only
Fix from $2,300 2025-04-16
Unclassified MEDIUM 6.5
CVE-2025-39564

Cross-Site Request Forgery (CSRF) vulnerability in WP Trio Conditional Shipping for WooCommerce conditional-shipping-for-woocommerce allows Cross Sit…

Mitigation only
Fix from $1,600 2025-04-16
Unclassified MEDIUM 6.5
CVE-2025-39563

Cross-Site Request Forgery (CSRF) vulnerability in WP Trio Conditional Payments for WooCommerce conditional-payments-for-woocommerce allows Cross Sit…

Mitigation only
Fix from $1,600 2025-04-16