Vulnerability index

Browse CVEs

7,373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Unclassified HIGH 7.1
CVE-2025-32482

Cross-Site Request Forgery (CSRF) vulnerability in quanganhdo Custom Smilies custom-smilies allows Stored XSS.This issue affects Custom Smilies: from…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31401

Cross-Site Request Forgery (CSRF) vulnerability in mmetrodw MMX – Make Me Christmas mmx-make-me-christmas allows Stored XSS.This issue affects MMX – …

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31402

Cross-Site Request Forgery (CSRF) vulnerability in NewsBoard Plugin NewsBoard Post and RSS Scroller newsboard allows Stored XSS.This issue affects Ne…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31404

Cross-Site Request Forgery (CSRF) vulnerability in Wladyslaw Madejczyk AF Tell a Friend af-tell-a-friend allows Stored XSS.This issue affects AF Tell…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-32476

Cross-Site Request Forgery (CSRF) vulnerability in blueinstyle Advanced Tag Lists advanced-tag-list allows Stored XSS.This issue affects Advanced Tag…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-32477

Cross-Site Request Forgery (CSRF) vulnerability in Jordi Salord WP-Easy Menu wp-easy-menu allows Stored XSS.This issue affects WP-Easy Menu: from n/a…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31393

Cross-Site Request Forgery (CSRF) vulnerability in vfvalent Social Bookmarking RELOADED social-bookmarking-reloaded allows Stored XSS.This issue affe…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31395

Cross-Site Request Forgery (CSRF) vulnerability in a.ankit Easy Custom CSS easy-custom-css allows Stored XSS.This issue affects Easy Custom CSS: from…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31399

Cross-Site Request Forgery (CSRF) vulnerability in Chandan Garg CG Scroll To Top cg-scroll-to-top allows Stored XSS.This issue affects CG Scroll To T…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31400

Cross-Site Request Forgery (CSRF) vulnerability in icyleaf WS Audio Player ws-audio-player allows Stored XSS.This issue affects WS Audio Player: from…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31385

Cross-Site Request Forgery (CSRF) vulnerability in intelcaprep Site Table of Contents site-table-of-contents allows Stored XSS.This issue affects Sit…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31388

Cross-Site Request Forgery (CSRF) vulnerability in doa The World the-world allows Stored XSS.This issue affects The World: from n/a through <= 0.4.

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31390

Cross-Site Request Forgery (CSRF) vulnerability in bdoga Social Crowd social-crowd allows Stored XSS.This issue affects Social Crowd: from n/a throug…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31391

Cross-Site Request Forgery (CSRF) vulnerability in regen Script Compressor script-compressor allows Stored XSS.This issue affects Script Compressor: …

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31392

Cross-Site Request Forgery (CSRF) vulnerability in Shameem Reza Smart Product Gallery Slider smart-product-gallery-slider allows Cross Site Request F…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31375

Cross-Site Request Forgery (CSRF) vulnerability in bhoogterp Scheduled scheduled allows Stored XSS.This issue affects Scheduled: from n/a through <= …

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31382

Cross-Site Request Forgery (CSRF) vulnerability in theode Language Field language-field allows Stored XSS.This issue affects Language Field: from n/a…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31383

Cross-Site Request Forgery (CSRF) vulnerability in sodena FrescoChat Live Chat flexytalk-widget allows Stored XSS.This issue affects FrescoChat Live …

Mitigation only
Fix from $1,950 2025-04-09
Unclassified CRITICAL 9.8
CVE-2025-31033

Cross-Site Request Forgery (CSRF) vulnerability in Adam Nowak Buddypress Humanity buddypress-humanity allows Cross Site Request Forgery.This issue af…

Mitigation only
Fix from $2,300 2025-04-09
Unclassified HIGH 8.8
CVE-2025-31036

Cross-Site Request Forgery (CSRF) vulnerability in WPSOLR WPSolr wpsolr-free allows Privilege Escalation.This issue affects WPSolr: from n/a through …

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 8.8
CVE-2025-31038

Cross-Site Request Forgery (CSRF) vulnerability in Essential Marketer Essential Breadcrumbs essential-breadcrumbs allows Privilege Escalation.This is…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 8.8
CVE-2025-31023

Cross-Site Request Forgery (CSRF) vulnerability in Purab Seo Meta Tags seo-meta-tags allows Cross Site Request Forgery.This issue affects Seo Meta Ta…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31026

Cross-Site Request Forgery (CSRF) vulnerability in Austin Comment Validation Reloaded comment-validation-reloaded allows Stored XSS.This issue affect…

Mitigation only
Fix from $1,950 2025-04-09
Unclassified HIGH 7.1
CVE-2025-31032

Cross-Site Request Forgery (CSRF) vulnerability in Pagopar - Grupo M S.A. Pagopar – WooCommerce Gateway pagopar-woocommerce-gateway allows Stored XSS…

Mitigation only
Fix from $1,950 2025-04-09
Wordpress\/plugin Upgrade Time Out Plugin MEDIUM 6.3
CVE-2024-8243

The WordPress/Plugin Upgrade Time Out Plugin WordPress plugin through 1.0 does not have CSRF check in some places, and is missing sanitisation as wel…

Fix: after 1.0
Fix from $1,600 2025-04-09
Unclassified HIGH 8.8
CVE-2025-3064

The WPFront User Role Editor plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.2.1. This is du…

Mitigation only
Fix from $1,950 2025-04-08
7kt Pac1260 Data Manager Firmware MEDIUM 6.5
CVE-2024-41795

A vulnerability has been identified in SENTRON 7KT PAC1260 Data Manager (All versions). The web interface of affected devices is vulnerable to Cross-…

Mitigation only
Fix from $1,600 2025-04-08
Unclassified HIGH 8.8
CVE-2024-11071

Permissive Cross-domain Policy with Untrusted Domains vulnerability in local API server of DestinyECM solution(versions described below) which is dev…

Mitigation only
Fix from $1,950 2025-04-07
Unclassified HIGH 7.5
CVE-2025-0810

The Read More & Accordion plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.4.7. This is due t…

Mitigation only
Fix from $1,950 2025-04-05
Wp Project Manager HIGH 8.8
CVE-2025-32280

Cross-Site Request Forgery (CSRF) vulnerability in weDevs WP Project Manager wedevs-project-manager allows Cross Site Request Forgery.This issue affe…

Fix: after 2.6.22
Fix from $1,950 2025-04-04