Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Flycms HIGH 8.8
CVE-2023-52072

FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/userconfig_updagte.

No fix yet
Fix from $1,950 2024-01-08
Flycms HIGH 8.8
CVE-2023-52073

FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/config_footer_updagte.

No fix yet
Fix from $1,950 2024-01-08
Flycms HIGH 8.8
CVE-2023-52074

FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component system/site/webconfig_updagte.

No fix yet
Fix from $1,950 2024-01-08
Js \& Css Script Optimizer HIGH 8.8
CVE-2023-52216

Cross-Site Request Forgery (CSRF) vulnerability in Yevhen Kotelnytskyi JS & CSS Script Optimizer.This issue affects JS & CSS Script Optimizer: from n…

Fix: after 0.3.3
Fix from $1,950 2024-01-08
Armember CRITICAL 9.8
CVE-2023-52200

Cross-Site Request Forgery (CSRF), Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember – Membership Plugin, Content Restri…

Fix: after 4.0.22
Fix from $2,300 2024-01-08
Wp Vr MEDIUM 6.1
CVE-2023-6529

The WP VR WordPress plugin before 8.3.15 does not authorisation and CSRF in a function hooked to admin_init, allowing unauthenticated users to downgr…

Fix: 8.3.15+
Fix from $1,600 2024-01-08
Wp Blogs Planetarium HIGH 8.8
CVE-2023-6532

The WP Blogs' Planetarium WordPress plugin through 1.0 does not have CSRF check in place when updating its settings, which could allow attackers to m…

Fix: after 1.0
Fix from $1,950 2024-01-08
Commenttweets HIGH 8.8
CVE-2023-6845

The CommentTweets WordPress plugin through 0.6 does not have CSRF checks in some places, which could allow attackers to make logged in users perform …

Fix: after 0.6
Fix from $1,950 2024-01-08
Woocommerce HIGH 8.8
CVE-2023-52222

Cross-Site Request Forgery (CSRF) vulnerability in Automattic WooCommerce.This issue affects WooCommerce: from n/a through 8.2.2.

Fix: after 8.2.2
Fix from $1,950 2024-01-08
Nex Forms HIGH 8.8
CVE-2023-52120

Cross-Site Request Forgery (CSRF) vulnerability in Basix NEX-Forms – Ultimate Form Builder – Contact forms and much more.This issue affects NEX-Forms…

Fix: after 8.5.2
Fix from $1,950 2024-01-05
Nitropack HIGH 8.8
CVE-2023-52121

Cross-Site Request Forgery (CSRF) vulnerability in NitroPack Inc. NitroPack – Cache & Speed Optimization for Core Web Vitals, Defer CSS & JavaScript,…

Fix: after 1.10.2
Fix from $1,950 2024-01-05
Simple Job Board HIGH 8.8
CVE-2023-52122

Cross-Site Request Forgery (CSRF) vulnerability in PressTigers Simple Job Board.This issue affects Simple Job Board: from n/a through 2.10.6.

Fix: after 2.10.6
Fix from $1,950 2024-01-05
Stylish Price List CRITICAL 9.8
CVE-2023-51673

Cross-Site Request Forgery (CSRF) vulnerability in Designful Stylish Price List – Price Table Builder & QR Code Restaurant Menu.This issue affects St…

Fix: after 7.0.17
Fix from $2,300 2024-01-05
Doofinder MEDIUM 6.5
CVE-2023-51678

Cross-Site Request Forgery (CSRF) vulnerability in Doofinder Doofinder WP & WooCommerce Search.This issue affects Doofinder WP & WooCommerce Search: …

Fix: after 2.0.33
Fix from $1,600 2024-01-05
Icegram Engage HIGH 8.8
CVE-2023-52119

Cross-Site Request Forgery (CSRF) vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Buil…

Fix: after 3.1.18
Fix from $1,950 2024-01-05
Awesome Support HIGH 8.8
CVE-2023-51538

Cross-Site Request Forgery (CSRF) vulnerability in Awesome Support Team Awesome Support – WordPress HelpDesk & Support Plugin.This issue affects Awes…

Fix: after 6.1.5
Fix from $1,950 2024-01-05
Apollo13 Framework Extensions HIGH 8.8
CVE-2023-51539

Cross-Site Request Forgery (CSRF) vulnerability in Apollo13Themes Apollo13 Framework Extensions.This issue affects Apollo13 Framework Extensions: fro…

Fix: after 1.9.1
Fix from $1,950 2024-01-05
Inline Image Upload For Bbpress HIGH 8.8
CVE-2023-51668

Cross-Site Request Forgery (CSRF) vulnerability in WP Zone Inline Image Upload for BBPress.This issue affects Inline Image Upload for BBPress: from n…

Fix: after 1.1.18
Fix from $1,950 2024-01-05
Spam Protection\, Antispam\, Firewall HIGH 8.8
CVE-2023-51535

Cross-Site Request Forgery (CSRF) vulnerability in СleanTalk - Anti-Spam Protection Spam protection, Anti-Spam, FireWall by CleanTalk.This issue affe…

Fix: after 6.20
Fix from $1,950 2024-01-05
Republish Old Posts HIGH 8.8
CVE-2023-52145

Cross-Site Request Forgery (CSRF) vulnerability in Marios Alexandrou Republish Old Posts.This issue affects Republish Old Posts: from n/a through 1.2…

Fix: after 1.21
Fix from $1,950 2024-01-05
Floating Button HIGH 8.8
CVE-2023-52149

Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Floating Button.This issue affects Floating Button: from n/a through 6.0.

Fix: after 6.0
Fix from $1,950 2024-01-05
Wpc Product Bundles For Woocommerce HIGH 8.8
CVE-2023-52127

Cross-Site Request Forgery (CSRF) vulnerability in WPClever WPC Product Bundles for WooCommerce.This issue affects WPC Product Bundles for WooCommerc…

Fix: after 7.3.1
Fix from $1,950 2024-01-05
White Label HIGH 8.8
CVE-2023-52128

Cross-Site Request Forgery (CSRF) vulnerability in WhiteWP White Label – WordPress Custom Admin, Custom Login Page, and Custom Dashboard.This issue a…

Fix: after 2.9.0
Fix from $1,950 2024-01-05
Teachpress HIGH 8.8
CVE-2023-52129

Cross-Site Request Forgery (CSRF) vulnerability in Michael Winkler teachPress.This issue affects teachPress: from n/a through 9.0.4.

Fix: after 9.0.4
Fix from $1,950 2024-01-05
Affiliates Manager HIGH 8.8
CVE-2023-52130

Cross-Site Request Forgery (CSRF) vulnerability in wp.Insider, wpaffiliatemgr Affiliates Manager.This issue affects Affiliates Manager: from n/a thro…

Fix: after 2.9.31
Fix from $1,950 2024-01-05
Custom Twitter Feeds HIGH 8.8
CVE-2023-52136

Cross-Site Request Forgery (CSRF) vulnerability in Smash Balloon Custom Twitter Feeds – A Tweets Widget or X Feed Widget.This issue affects Custom Tw…

Fix: after 2.1.2
Fix from $1,950 2024-01-05
Strong Testimonials HIGH 8.8
CVE-2023-52123

Cross-Site Request Forgery (CSRF) vulnerability in WPChill Strong Testimonials.This issue affects Strong Testimonials: from n/a through 3.1.10.

Fix: after 3.1.10
Fix from $1,950 2024-01-05
Dynamic Content For Elementor HIGH 8.8
CVE-2023-52150

Cross-Site Request Forgery (CSRF) vulnerability in Ovation S.R.L. Dynamic Content for Elementor.This issue affects Dynamic Content for Elementor: fro…

Fix: 2.12.5+
Fix from $1,950 2024-01-05
Wp Job Portal HIGH 8.8
CVE-2023-52184

Cross-Site Request Forgery (CSRF) vulnerability in WP Job Portal WP Job Portal – A Complete Job Board.This issue affects WP Job Portal – A Complete J…

Fix: after 2.0.6
Fix from $1,950 2024-01-05
Ownhealthrecord HIGH 8.8
CVE-2018-25096

A vulnerability was found in MdAlAmin-aol Own Health Record 0.1-alpha/0.2-alpha/0.3-alpha/0.3.1-alpha. It has been rated as problematic. This issue a…

Fix: 0.4+
Fix from $1,950 2023-12-30