Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Quantity Plus Minus Button For Woocommerce HIGH 8.8
CVE-2023-48768

Cross-Site Request Forgery (CSRF) vulnerability in CodeAstrology Team Quantity Plus Minus Button for WooCommerce by CodeAstrology.This issue affects …

Fix: 1.2.0+
Fix from $1,950 2023-12-18
Chat Bubble HIGH 8.8
CVE-2023-48769

Cross-Site Request Forgery (CSRF) vulnerability in Blue Coral Chat Bubble – Floating Chat with Contact Chat Icons, Messages, Telegram, Email, SMS, Ca…

Fix: after 2.3
Fix from $1,950 2023-12-18
Prevent Landscape Rotation HIGH 8.8
CVE-2023-48772

Cross-Site Request Forgery (CSRF) vulnerability in Arul Prasad J Prevent Landscape Rotation.This issue affects Prevent Landscape Rotation: from n/a t…

Fix: after 2.0
Fix from $1,950 2023-12-18
Woocommerce Login Redirect HIGH 8.8
CVE-2023-48773

Cross-Site Request Forgery (CSRF) vulnerability in WP Doctor WooCommerce Login Redirect.This issue affects WooCommerce Login Redirect: from n/a throu…

Fix: after 2.2.4
Fix from $1,950 2023-12-18
Product Size Chart For Woocommerce HIGH 8.8
CVE-2023-48778

Cross-Site Request Forgery (CSRF) vulnerability in VillaTheme Product Size Chart For WooCommerce.This issue affects Product Size Chart For WooCommerc…

Fix: after 1.1.5
Fix from $1,950 2023-12-18
Export Any Wordpress Data To Xml\/csv HIGH 8.8
CVE-2023-5882

The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 does not check nonce tokens e…

Fix: 1.4.1 / 1.8.6+
Fix from $1,950 2023-12-18
Export Any Wordpress Data To Xml\/csv HIGH 8.8
CVE-2023-5886

The Export any WordPress data to XML/CSV WordPress plugin before 1.4.0, WP All Export Pro WordPress plugin before 1.8.6 does not check nonce tokens e…

Fix: 1.4.1 / 1.8.6+
Fix from $1,950 2023-12-18
Jetelements For Elementor HIGH 8.8
CVE-2023-48762

Cross-Site Request Forgery (CSRF) vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a throug…

Fix: 2.6.13.1+
Fix from $1,950 2023-12-18
Svgator HIGH 8.8
CVE-2023-48766

Cross-Site Request Forgery (CSRF) vulnerability in SVGator SVGator – Add Animated SVG Easily.This issue affects SVGator – Add Animated SVG Easily: fr…

Fix: after 1.2.4
Fix from $1,950 2023-12-18
Adfoxly HIGH 8.8
CVE-2023-46617

Cross-Site Request Forgery (CSRF) vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt.This issue affects AdFoxly – Ad Manager, AdSen…

Fix: after 1.8.5
Fix from $1,950 2023-12-18
Woocommerce Bookings HIGH 8.8
CVE-2023-47787

Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Bookings.This issue affects WooCommerce Bookings: from n/a through 2.0.3.

Fix: 2.0.4+
Fix from $1,950 2023-12-18
Canada Post Shipping Method HIGH 8.8
CVE-2023-47789

Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce Canada Post Shipping Method.This issue affects Canada Post Shipping Method: from n/a t…

Fix: 2.8.4+
Fix from $1,950 2023-12-18
Disable User Login HIGH 8.8
CVE-2023-47806

Cross-Site Request Forgery (CSRF) vulnerability in Saint Systems Disable User Login.This issue affects Disable User Login: from n/a through 1.3.7.

Fix: after 1.3.7
Fix from $1,950 2023-12-18
Teachpress HIGH 8.8
CVE-2023-48755

Cross-Site Request Forgery (CSRF) vulnerability in Michael Winkler teachPress.This issue affects teachPress: from n/a through 9.0.4.

Fix: 9.0.5+
Fix from $1,950 2023-12-18
Taggbox HIGH 8.8
CVE-2023-33214

Cross-Site Request Forgery (CSRF) vulnerability in Tagbox Tagbox – UGC Galleries, Social Media Widgets, User Reviews & Analytics.This issue affects T…

Fix: after 3.1
Fix from $1,950 2023-12-18
Multi Currency For Woocommerce HIGH 8.8
CVE-2023-49840

Cross-Site Request Forgery (CSRF) vulnerability in Palscode Multi Currency For WooCommerce.This issue affects Multi Currency For WooCommerce: from n/…

Fix: after 1.5.5
Fix from $1,950 2023-12-18
First Order Discount Woocommerce HIGH 8.8
CVE-2023-49843

Cross-Site Request Forgery (CSRF) vulnerability in QuanticEdge First Order Discount Woocommerce.This issue affects First Order Discount Woocommerce: …

Fix: after 1.21
Fix from $1,950 2023-12-18
Wpperformancetester HIGH 8.8
CVE-2023-49844

Cross-Site Request Forgery (CSRF) vulnerability in Kevin Ohashi WPPerformanceTester.This issue affects WPPerformanceTester: from n/a through 2.0.0.

Fix: after 2.0.0
Fix from $1,950 2023-12-18
Paytr Taksit Tablosu Woocommerce HIGH 8.8
CVE-2023-49853

Cross-Site Request Forgery (CSRF) vulnerability in PayTR Ödeme ve Elektronik Para Kuruluşu A.Ş. PayTR Taksit Tablosu – WooCommerce.This issue affects…

Fix: after 1.3.1
Fix from $1,950 2023-12-18
Custom Post Type Page Template HIGH 8.8
CVE-2023-50372

Cross-Site Request Forgery (CSRF) vulnerability in Hiroaki Miyashita Custom Post Type Page Template.This issue affects Custom Post Type Page Template…

Fix: after 1.1
Fix from $1,950 2023-12-18
Caddy HIGH 8.8
CVE-2023-49854

Cross-Site Request Forgery (CSRF) vulnerability in Tribe Interactive Caddy – Smart Side Cart for WooCommerce.This issue affects Caddy – Smart Side Ca…

Fix: 1.9.8+
Fix from $1,950 2023-12-18
Menu Bar Cart Icon For Woocommerce HIGH 8.8
CVE-2023-49855

Cross-Site Request Forgery (CSRF) vulnerability in BinaryCarpenter Menu Bar Cart Icon For WooCommerce By Binary Carpenter.This issue affects Menu Bar…

Fix: after 1.49.3
Fix from $1,950 2023-12-18
Nxfilter HIGH 8.8
CVE-2023-6904

A vulnerability classified as problematic was found in Jahastech NxFilter 4.3.2.5. This vulnerability affects unknown code of the file /config,admin.…

Mitigation only
Fix from $1,950 2023-12-17
Fox Currency Switcher Professional For Woocommerce HIGH 8.8
CVE-2023-49834

Cross-Site Request Forgery (CSRF) vulnerability in realmag777 FOX – Currency Switcher Professional for WooCommerce.This issue affects FOX – Currency …

Fix: 1.4.1.5+
Fix from $1,950 2023-12-17
Fix My Feed Rss Repair HIGH 8.8
CVE-2023-49816

Cross-Site Request Forgery (CSRF) vulnerability in Innovative Solutions Fix My Feed RSS Repair.This issue affects Fix My Feed RSS Repair: from n/a th…

Fix: after 1.4
Fix from $1,950 2023-12-17
Product Catalog Feed HIGH 8.8
CVE-2023-49824

Cross-Site Request Forgery (CSRF) vulnerability in PixelYourSite Product Catalog Feed by PixelYourSite.This issue affects Product Catalog Feed by Pix…

Fix: 2.2.0+
Fix from $1,950 2023-12-17
Csv Importer HIGH 8.8
CVE-2023-49775

Cross-Site Request Forgery (CSRF) vulnerability in Denis Kobozev CSV Importer.This issue affects CSV Importer: from n/a through 0.3.8.

Fix: after 0.3.8
Fix from $1,950 2023-12-17
Simple Wp Sitemap HIGH 8.8
CVE-2023-24380

Cross-Site Request Forgery (CSRF) vulnerability in Webbjocke Simple Wp Sitemap.This issue affects Simple Wp Sitemap: from n/a through 1.2.1.

Fix: after 1.2.1
Fix from $1,950 2023-12-17
Block For Font Awesome HIGH 8.8
CVE-2023-49751

Cross-Site Request Forgery (CSRF) vulnerability in Ciprian Popescu Block for Font Awesome.This issue affects Block for Font Awesome: from n/a through…

Fix: after 1.4.0
Fix from $1,950 2023-12-17
Integrate Google Drive HIGH 8.8
CVE-2023-49769

Cross-Site Request Forgery (CSRF) vulnerability in SoftLab Integrate Google Drive.This issue affects Integrate Google Drive: from n/a through 1.3.4.

Fix: 1.3.5+
Fix from $1,950 2023-12-17