Vulnerability index

Browse CVEs

7,373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Digital Experience Platform HIGH 8.8
CVE-2024-26273

Cross-site request forgery (CSRF) vulnerability in the content page editor in Liferay Portal 7.4.0 through 7.4.3.103, and Liferay DXP 2023.Q4.0 throu…

Fix: 7.4.3.104 / 2023.q3.6+
Fix from $1,950 2024-10-22
Category And Taxonomy Meta Fields MEDIUM 5.4
CVE-2024-9588

The Category and Taxonomy Meta Fields plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.0. This …

Fix: after 1.0.0
Fix from $1,600 2024-10-22
Latepoint HIGH 8.8
CVE-2024-43945

Cross-Site Request Forgery (CSRF) vulnerability in Latepoint LatePoint allows Cross Site Request Forgery.This issue affects LatePoint: from n/a throu…

Fix: after 4.9.91
Fix from $1,950 2024-10-21
Most And Least Read Posts Widget HIGH 8.8
CVE-2024-49628

Cross-Site Request Forgery (CSRF) vulnerability in whiletrue Most And Least Read Posts Widget most-and-least-read-posts-widget allows Cross Site Requ…

Fix: 2.5.19+
Fix from $1,950 2024-10-20
Ideapush HIGH 8.8
CVE-2024-49275

Cross-Site Request Forgery (CSRF) vulnerability in Northern Beaches Websites IdeaPush ideapush allows Cross Site Request Forgery.This issue affects I…

Fix: 8.71+
Fix from $1,950 2024-10-20
Cooked HIGH 8.8
CVE-2024-49290

Cross-Site Request Forgery (CSRF) vulnerability in Gora Tech LLC Cooked Pro allows Cross Site Request Forgery.This issue affects Cooked Pro: from n/a…

Fix: 1.8.0+
Fix from $1,950 2024-10-20
Wp Content Copy Protection \& No Right Click HIGH 8.8
CVE-2024-49306

Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Content Copy Protection & No Right Click wp-content-copy-protector allows Cross Site Req…

Fix: 3.6.1+
Fix from $1,950 2024-10-20
Wordpress Image Seo HIGH 8.8
CVE-2024-49627

Cross-Site Request Forgery (CSRF) vulnerability in Noor Alam WordPress Image SEO allows Cross Site Request Forgery.This issue affects WordPress Image…

Fix: after 1.1.4
Fix from $1,950 2024-10-20
Cartbounty CRITICAL 9.8
CVE-2024-47634

Cross-Site Request Forgery (CSRF) vulnerability in Streamline CartBounty – Save and recover abandoned carts for WooCommerce woo-save-abandoned-carts …

Fix: 8.2.1+
Fix from $2,300 2024-10-20
Table Of Contents Plus HIGH 8.8
CVE-2024-49250

Cross-Site Request Forgery (CSRF) vulnerability in Syed Balkhi Table of Contents Plus table-of-contents-plus allows Cross Site Request Forgery.This i…

Fix: after 2408
Fix from $1,950 2024-10-20
Social Auto Poster HIGH 8.8
CVE-2024-49272

Cross-Site Request Forgery (CSRF) vulnerability in wpweb Social Auto Poster social-auto-poster allows Cross Site Request Forgery.This issue affects S…

Fix: 5.3.16+
Fix from $1,950 2024-10-20
Vod Infomaniak HIGH 8.8
CVE-2024-49274

Cross-Site Request Forgery (CSRF) vulnerability in Infomaniak Network VOD Infomaniak vod-infomaniak allows Cross Site Request Forgery.This issue affe…

Fix: 1.5.8+
Fix from $1,950 2024-10-20
Back Link Tracker HIGH 8.8
CVE-2024-49617

Cross-Site Request Forgery (CSRF) vulnerability in anciwasim Back Link Tracker back-link-tracker allows Blind SQL Injection.This issue affects Back L…

Fix: after 1.0.0
Fix from $1,950 2024-10-20
Endless Posts Navigation MEDIUM 6.1
CVE-2024-49629

Cross-Site Request Forgery (CSRF) vulnerability in Fahad Mahmood Endless Posts Navigation endless-posts-navigation allows Stored XSS.This issue affec…

Fix: 2.2.8+
Fix from $1,600 2024-10-20
Safetyforms HIGH 8.8
CVE-2024-49615

Cross-Site Request Forgery (CSRF) vulnerability in Henrique Rodrigues SafetyForms safetymails-forms allows Blind SQL Injection.This issue affects Saf…

Fix: after 1.0.0
Fix from $1,950 2024-10-20
Googledrive Folder List MEDIUM 6.1
CVE-2024-49335

Cross-Site Request Forgery (CSRF) vulnerability in sh4d0w28 GoogleDrive folder list googledrive-folder-list allows Stored XSS.This issue affects Goog…

Fix: after 2.2.2
Fix from $1,600 2024-10-20
Avchat Video Chat MEDIUM 6.1
CVE-2024-49605

Cross-Site Request Forgery (CSRF) vulnerability in Stefan Nour AVChat Video Chat avchat-3 allows Stored XSS.This issue affects AVChat Video Chat: fro…

Fix: after 2.2
Fix from $1,600 2024-10-20
Apa Register Newsletter Form HIGH 8.8
CVE-2024-49621

Cross-Site Request Forgery (CSRF) vulnerability in aatmaadhikari APA Register Newsletter Form apa-register-newsletter-form allows SQL Injection.This …

Fix: after 1.0.0
Fix from $1,950 2024-10-20
Apa Banner Slider HIGH 8.8
CVE-2024-49622

Cross-Site Request Forgery (CSRF) vulnerability in aatmaadhikari Apa Banner Slider apa-banner-slider allows SQL Injection.This issue affects Apa Bann…

Fix: after 1.0.0
Fix from $1,950 2024-10-20
Unclassified HIGH 7.1
CVE-2024-49313

Cross-Site Request Forgery (CSRF) vulnerability in rudestan VKontakte Wall Post vkontakte-wall-post allows Stored XSS.This issue affects VKontakte Wa…

Mitigation only
Fix from $1,950 2024-10-17
Unclassified MEDIUM 5.4
CVE-2024-49304

Cross-Site Request Forgery (CSRF) vulnerability in DOTonPAPER Pinpoint Booking System booking-system allows Stored XSS.This issue affects Pinpoint Bo…

Mitigation only
Fix from $1,600 2024-10-17
Ahmeti Wp Timeline MEDIUM 6.1
CVE-2024-49237

Cross-Site Request Forgery (CSRF) vulnerability in ahmeti Ahmeti Wp Timeline ahmeti-wp-timeline allows Stored XSS.This issue affects Ahmeti Wp Timeli…

Fix: after 5.1
Fix from $1,600 2024-10-17
Cookie Scanner MEDIUM 6.1
CVE-2024-49220

Cross-Site Request Forgery (CSRF) vulnerability in Nikel Cookie Scanner cookie-scanner allows Cross Site Request Forgery.This issue affects Cookie Sc…

Fix: after 1.1
Fix from $1,600 2024-10-17
Cslider MEDIUM 6.1
CVE-2024-49221

Cross-Site Request Forgery (CSRF) vulnerability in julian.weinert cSlider cslider allows Cross Site Request Forgery.This issue affects cSlider: from …

Fix: after 2.4.2
Fix from $1,600 2024-10-17
Cj Change Howdy MEDIUM 6.1
CVE-2024-49223

Cross-Site Request Forgery (CSRF) vulnerability in shibulijack CJ Change Howdy cj-change-howdy allows Cross Site Request Forgery.This issue affects C…

Fix: after 3.3.1
Fix from $1,600 2024-10-17
Unclassified HIGH 7.1
CVE-2024-48048

Cross-Site Request Forgery (CSRF) vulnerability in GabbyKhrmon Wsify Widget wsify-widget allows Stored XSS.This issue affects Wsify Widget: from n/a …

Mitigation only
Fix from $1,950 2024-10-17
Unclassified MEDIUM 6.5
CVE-2024-48031

Cross-Site Request Forgery (CSRF) vulnerability in sumitsurai Featured Posts with Multiple Custom Groups (FPMCG) featured-posts-with-multiple-custom-…

Mitigation only
Fix from $1,600 2024-10-17
Unclassified MEDIUM 5.4
CVE-2024-48037

Cross-Site Request Forgery (CSRF) vulnerability in A WP Life Contact Form Widget new-contact-form-widget allows Cross Site Request Forgery.This issue…

Mitigation only
Fix from $1,600 2024-10-17
Dingfanzu Cms MEDIUM 6.1
CVE-2024-48758

dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the addPro parameter of the component doAdminAction.php which al…

No fix yet
Fix from $1,600 2024-10-16
Ata 191 Firmware MEDIUM 6.5
CVE-2024-20421

A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remot…

Fix: 11.2.5 / 12.0.2+
Fix from $1,600 2024-10-16