Vulnerability index

Browse CVEs

7,373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Unclassified HIGH 7.1
CVE-2025-25138

Cross-Site Request Forgery (CSRF) vulnerability in Rishi On Page SEO + Whatsapp Chat Button ops-robots-txt allows Stored XSS.This issue affects On Pa…

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25139

Cross-Site Request Forgery (CSRF) vulnerability in Cynob IT Consultancy WP Custom Post RSS Feed wp-custom-post-rss-feed allows Stored XSS.This issue …

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25123

Cross-Site Request Forgery (CSRF) vulnerability in xdark Easy Related Posts easy-related-posts allows Stored XSS.This issue affects Easy Related Post…

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25125

Cross-Site Request Forgery (CSRF) vulnerability in CyrilG Fyrebox Quizzes fyrebox-shortcode allows Stored XSS.This issue affects Fyrebox Quizzes: fro…

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25126

Cross-Site Request Forgery (CSRF) vulnerability in zmseo ZMSEO zmseo allows Stored XSS.This issue affects ZMSEO: from n/a through <= 1.14.1.

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25104

Cross-Site Request Forgery (CSRF) vulnerability in mraliende URL-Preview-Box good-url-preview-box allows Cross Site Request Forgery.This issue affect…

Mitigation only
Fix from $1,950 2025-02-07
Unclassified CRITICAL 9.6
CVE-2025-25106

Cross-Site Request Forgery (CSRF) vulnerability in FancyWP Starter Templates by FancyWP starter-templates allows Cross Site Request Forgery.This issu…

Mitigation only
Fix from $2,300 2025-02-07
Unclassified CRITICAL 9.6
CVE-2025-25107

Cross-Site Request Forgery (CSRF) vulnerability in sainwp OneStore Sites onestore-sites allows Cross Site Request Forgery.This issue affects OneStore…

Mitigation only
Fix from $2,300 2025-02-07
Unclassified MEDIUM 5.4
CVE-2025-25111

Cross-Site Request Forgery (CSRF) vulnerability in WP Spell Check WP Spell Check wp-spell-check allows Cross Site Request Forgery.This issue affects …

Mitigation only
Fix from $1,600 2025-02-07
Unclassified CRITICAL 9.6
CVE-2025-25101

Cross-Site Request Forgery (CSRF) vulnerability in MetricThemes Munk Sites munk-sites allows Cross Site Request Forgery.This issue affects Munk Sites…

Mitigation only
Fix from $2,300 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25088

Cross-Site Request Forgery (CSRF) vulnerability in blackus3r WP Keyword Monitor wp-keyword-monitor allows Cross Site Request Forgery.This issue affec…

Mitigation only
Fix from $1,950 2025-02-07
Unclassified MEDIUM 6.1
CVE-2025-25093

Cross-Site Request Forgery (CSRF) vulnerability in paulswarthout Child Themes Helper child-themes-helper allows Path Traversal.This issue affects Chi…

No fix yet
Fix from $1,600 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25072

Cross-Site Request Forgery (CSRF) vulnerability in thunderbax WP Admin Custom Page wp-admin-custom-page allows Stored XSS.This issue affects WP Admin…

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25074

Cross-Site Request Forgery (CSRF) vulnerability in Nirmal Kumar Ram WP Social Stream wp-social-stream allows Stored XSS.This issue affects WP Social …

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25075

Cross-Site Request Forgery (CSRF) vulnerability in Venugopal Show notice or message on admin area show-notice-or-message-on-admin-area allows Stored …

Mitigation only
Fix from $1,950 2025-02-07
Unclassified HIGH 7.1
CVE-2025-25071

Cross-Site Request Forgery (CSRF) vulnerability in topplugins Vignette Ads vignete-ads allows Stored XSS.This issue affects Vignette Ads: from n/a th…

Mitigation only
Fix from $1,950 2025-02-07
Cinema Booking System MEDIUM 5.4
CVE-2024-57429

A cross-site request forgery (CSRF) vulnerability in the pjActionUpdate function of PHPJabbers Cinema Booking System v2.0 allows remote attackers to …

No fix yet
Fix from $1,600 2025-02-06
Security Verify Access MEDIUM 6.5
CVE-2024-35138

IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site request forgery which could allow an attacker to…

Fix: after 10.0.8
Fix from $1,600 2025-02-04
Unclassified MEDIUM 6.1
CVE-2024-13510

The ShopSite plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.5.10. This is due to missing or…

Mitigation only
Fix from $1,600 2025-02-04
Dsgvo All In One For Wp MEDIUM 6.5
CVE-2024-13356

The DSGVO All in one for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.6. This is due t…

Fix: 4.7+
Fix from $1,600 2025-02-04
Wp Projects Portfolio With Client Testimonials MEDIUM 6.1
CVE-2024-13115

The WP Projects Portfolio with Client Testimonials WordPress plugin through 3.0 does not have CSRF check in some places, and is missing sanitisation …

Fix: after 3.0
Fix from $1,600 2025-02-04
Unclassified HIGH 8.8
CVE-2024-56901

A Cross-Site Request Forgery (CSRF) vulnerability in Geovision GV-ASWeb application with the version 6.1.1.0 or less that allows attackers to arbitra…

Mitigation only
Fix from $1,950 2025-02-03
Unclassified HIGH 8.1
CVE-2024-56903

Geovision GV-ASWeb with the version 6.1.1.0 or less allows attackers to modify POST request method with the GET against critical functionalities, suc…

Mitigation only
Fix from $1,950 2025-02-03
Unclassified HIGH 7.1
CVE-2025-22703

Cross-Site Request Forgery (CSRF) vulnerability in manuelvicedo Forge – Front-End Page Builder forge allows Stored XSS.This issue affects Forge – Fro…

Mitigation only
Fix from $1,950 2025-02-03
Unclassified HIGH 7.1
CVE-2025-22688

Cross-Site Request Forgery (CSRF) vulnerability in Ederson Peka Unlimited Page Sidebars unlimited-page-sidebars allows Stored XSS.This issue affects …

Mitigation only
Fix from $1,950 2025-02-03
Unclassified HIGH 7.1
CVE-2025-22690

Cross-Site Request Forgery (CSRF) vulnerability in DigiTimber DigiTimber cPanel Integration digitimber-cpanel-integration allows Stored XSS.This issu…

Mitigation only
Fix from $1,950 2025-02-03
Unclassified HIGH 7.1
CVE-2025-22685

Cross-Site Request Forgery (CSRF) vulnerability in CheGevara29 Tags to Keywords tags-to-meta-keywords allows Stored XSS.This issue affects Tags to Ke…

Mitigation only
Fix from $1,950 2025-02-03
Sterling B2b Integrator HIGH 8.8
CVE-2023-38739

IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site request forgery which could allow an atta…

Fix: after 6.2.0.3
Fix from $1,950 2025-01-31
Unclassified HIGH 7.1
CVE-2025-24749

Cross-Site Request Forgery (CSRF) vulnerability in Overt Software Solutions LTD EZPZ SAML SP Single Sign On (SSO) allows Cross Site Request Forgery. …

Mitigation only
Fix from $1,950 2025-01-31
Unclassified HIGH 7.1
CVE-2025-24549

Cross-Site Request Forgery (CSRF) vulnerability in Mahbubur Rahman Post Meta post-meta allows Reflected XSS.This issue affects Post Meta: from n/a th…

Mitigation only
Fix from $1,950 2025-01-31