Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Unclassified HIGH 8.8
CVE-2024-31424

Cross-Site Request Forgery (CSRF) vulnerability in Hamid Alinia Login with phone number login-with-phone-number.This issue affects Login with phone n…

Mitigation only
Fix from $1,950 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-31425

Cross-Site Request Forgery (CSRF) vulnerability in TMS Amelia.This issue affects Amelia: from n/a through 1.0.95.

Mitigation only
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32103

Cross-Site Request Forgery (CSRF) vulnerability in Siteimprove.This issue affects Siteimprove: from n/a through 2.0.6.

No fix yet
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32096

Cross-Site Request Forgery (CSRF) vulnerability in DAEV.Tech WP Migration Plugin DB & Files – WP Synchro.This issue affects WP Migration Plugin DB & …

Mitigation only
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32097

Cross-Site Request Forgery (CSRF) vulnerability in Eyal Fitoussi GEO my WordPress.This issue affects GEO my WordPress: from n/a through 4.1.

No fix yet
Fix from $1,600 2024-04-15
Unclassified MEDIUM 6.5
CVE-2024-32091

Cross-Site Request Forgery (CSRF) vulnerability in Tonjoo Sangar Slider.This issue affects Sangar Slider: from n/a through 1.3.2.

Mitigation only
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32092

Cross-Site Request Forgery (CSRF) vulnerability in Michael Bester Kimili Flash Embed.This issue affects Kimili Flash Embed: from n/a through 2.5.3.

No fix yet
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32093

Cross-Site Request Forgery (CSRF) vulnerability in Nose Graze Novelist.This issue affects Novelist: from n/a through 1.2.2.

Mitigation only
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-31941

Cross-Site Request Forgery (CSRF) vulnerability in CodePeople CP Media Player.This issue affects CP Media Player: from n/a through 1.1.3.

Mitigation only
Fix from $1,600 2024-04-15
Citadela Listing MEDIUM 5.4
CVE-2024-32085

Cross-Site Request Forgery (CSRF) vulnerability in AitThemes Citadela Listing.This issue affects Citadela Listing: from n/a before 5.20.0.

Fix: 5.20.0+
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32449

Cross-Site Request Forgery (CSRF) vulnerability in MagniGenie RestroPress.This issue affects RestroPress: from n/a through 3.1.2.

Mitigation only
Fix from $1,600 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32452

Cross-Site Request Forgery (CSRF) vulnerability in WP EasyCart.This issue affects WP EasyCart: from n/a through 5.5.19.

Mitigation only
Fix from $1,600 2024-04-15
Zoho Campaigns HIGH 8.8
CVE-2024-32441

Cross-Site Request Forgery (CSRF) vulnerability in Zoho Campaigns.This issue affects Zoho Campaigns: from n/a through 2.0.7.

Fix: 2.0.8+
Fix from $1,950 2024-04-15
Zoho Campaigns HIGH 8.8
CVE-2024-32442

Cross-Site Request Forgery (CSRF) vulnerability in Zoho Campaigns.This issue affects Zoho Campaigns: from n/a through 2.0.7.

Fix: 2.0.8+
Fix from $1,950 2024-04-15
Country Blocker HIGH 8.8
CVE-2024-32443

Cross-Site Request Forgery (CSRF) vulnerability in IP2Location Download IP2Location Country Blocker.This issue affects Download IP2Location Country B…

Fix: 2.34.3+
Fix from $1,950 2024-04-15
Webinarignition HIGH 8.8
CVE-2024-32445

Cross-Site Request Forgery (CSRF) vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition.This issue affects WebinarIgnition: from…

Fix: 3.06.0+
Fix from $1,950 2024-04-15
Unclassified MEDIUM 5.4
CVE-2024-32446

Cross-Site Request Forgery (CSRF) vulnerability in WP Swings Wallet System for WooCommerce.This issue affects Wallet System for WooCommerce: from n/a…

Mitigation only
Fix from $1,600 2024-04-15
Seo Booster HIGH 8.8
CVE-2024-32438

Cross-Site Request Forgery (CSRF) vulnerability in cleverplugins.Com SEO Booster.This issue affects SEO Booster: from n/a through 3.8.9.

Fix: 3.8.10+
Fix from $1,950 2024-04-15
Wp Client Reports HIGH 8.8
CVE-2024-32439

Cross-Site Request Forgery (CSRF) vulnerability in SwitchWP WP Client Reports.This issue affects WP Client Reports: from n/a through 1.0.22.

Fix: 1.0.23+
Fix from $1,950 2024-04-15
Asgaros Forum HIGH 8.8
CVE-2024-32440

Cross-Site Request Forgery (CSRF) vulnerability in Thomas Belser Asgaros Forum.This issue affects Asgaros Forum: from n/a through 2.8.0.

Fix: 2.9.0+
Fix from $1,950 2024-04-15
Unclassified HIGH 7.1
CVE-2024-31093

Cross-Site Request Forgery (CSRF) vulnerability in Kaloyan K. Tsvetkov Broken Images allows Cross-Site Scripting (XSS).This issue affects Broken Imag…

Mitigation only
Fix from $1,950 2024-04-15
Sync Post With Other Site MEDIUM 6.1
CVE-2024-32082

Cross-Site Request Forgery (CSRF) vulnerability in Kamlesh Parmar Sync Post With Other Site sync-post-with-other-site allows Cross Site Request Forge…

Fix: after 1.8
Fix from $1,600 2024-04-15
Unclassified HIGH 7.1
CVE-2024-30545

Cross-Site Request Forgery (CSRF) vulnerability in Nick Powers Social Author Bio allows Stored XSS.This issue affects Social Author Bio: from n/a thr…

Mitigation only
Fix from $1,950 2024-04-15
Unclassified HIGH 7.1
CVE-2024-31086

Cross-Site Request Forgery (CSRF) vulnerability in Venugopal Change default login logo,url and title allows Cross-Site Scripting (XSS).This issue aff…

Mitigation only
Fix from $1,950 2024-04-15
Advanced Search HIGH 8.7
CVE-2024-2739

The Advanced Search WordPress plugin through 1.1.6 does not have CSRF checks in some places, which could allow attackers to make logged in users perf…

Fix: after 1.1.6
Fix from $1,950 2024-04-15
Simple Buttons Creator MEDIUM 6.1
CVE-2024-2857

The Simple Buttons Creator WordPress plugin through 1.04 does not have any authorisation as well as CSRF in its add button function, allowing unauthe…

Fix: after 1.04
Fix from $1,600 2024-04-15
Smart Forms MEDIUM 5.4
CVE-2024-1306

The Smart Forms WordPress plugin before 2.6.94 does not have CSRF checks in some places, which could allow attackers to make logged-in users perform…

Fix: 2.6.94+
Fix from $1,600 2024-04-15
Profilegrid HIGH 8.8
CVE-2024-31362

Cross-Site Request Forgery (CSRF) vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid : from n/a through 5.7.8.

Fix: 5.7.9+
Fix from $1,950 2024-04-12
Lifterlms HIGH 8.8
CVE-2024-31363

Cross-Site Request Forgery (CSRF) vulnerability in LifterLMS.This issue affects LifterLMS: from n/a through 7.5.0.

Fix: 7.5.1+
Fix from $1,950 2024-04-12
Unclassified MEDIUM 5.4
CVE-2024-31279

Cross-Site Request Forgery (CSRF) vulnerability in Catch Plugins Generate Child Theme.This issue affects Generate Child Theme: from n/a through 2.0.

Mitigation only
Fix from $1,600 2024-04-12