Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
Anac Xml Bandi Di Gara HIGH 8.8
CVE-2023-47655

Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi ANAC XML Bandi di Gara.This issue affects ANAC XML Bandi di Gara: from n/a through 7.…

Fix: after 7.5
Fix from $1,950 2023-11-18
Userheat Plugin HIGH 8.8
CVE-2023-47553

Cross-Site Request Forgery (CSRF) vulnerability in User Local Inc UserHeat Plugin.This issue affects UserHeat Plugin: from n/a through 1.1.6.

Fix: after 1.1.6
Fix from $1,950 2023-11-18
Device Theme Switcher HIGH 8.8
CVE-2023-47556

Cross-Site Request Forgery (CSRF) vulnerability in James Mehorter Device Theme Switcher.This issue affects Device Theme Switcher: from n/a through 3.…

Fix: after 3.0.2
Fix from $1,950 2023-11-18
Profilegrid HIGH 8.8
CVE-2023-47644

Cross-Site Request Forgery (CSRF) vulnerability in profilegrid ProfileGrid – User Profiles, Memberships, Groups and Communities.This issue affects Pr…

Fix: after 5.6.6
Fix from $1,950 2023-11-18
Best Restaurant Menu HIGH 8.8
CVE-2023-47649

Cross-Site Request Forgery (CSRF) vulnerability in PriceListo Best Restaurant Menu by PriceListo.This issue affects Best Restaurant Menu by PriceList…

Fix: after 1.3.1
Fix from $1,950 2023-11-18
Add Local Avatar HIGH 8.8
CVE-2023-47650

Cross-Site Request Forgery (CSRF) vulnerability in Peter Sterling Add Local Avatar.This issue affects Add Local Avatar: from n/a through 12.1.

Fix: after 12.1
Fix from $1,950 2023-11-18
Wp Links Page HIGH 8.8
CVE-2023-47651

Cross-Site Request Forgery (CSRF) vulnerability in Robert Macchi WP Links Page.This issue affects WP Links Page: from n/a through 4.9.4.

Fix: after 4.9.4
Fix from $1,950 2023-11-18
Mshop My Site HIGH 8.8
CVE-2023-47243

Cross-Site Request Forgery (CSRF) vulnerability in CodeMShop 코드엠샵 마이사이트 – MSHOP MY SITE.This issue affects 코드엠샵 마이사이트 – MSHOP MY SI…

Fix: after 1.1.6
Fix from $1,950 2023-11-18
Woocommerce Product Table Lite HIGH 8.8
CVE-2023-47519

Cross-Site Request Forgery (CSRF) vulnerability in WC Product Table WooCommerce Product Table Lite.This issue affects WooCommerce Product Table Lite:…

Fix: after 2.6.2
Fix from $1,950 2023-11-18
Droit Dark Mode HIGH 8.8
CVE-2023-47531

Cross-Site Request Forgery (CSRF) vulnerability in DroitThemes Droit Dark Mode.This issue affects Droit Dark Mode: from n/a through 1.1.2.

Fix: after 1.1.2
Fix from $1,950 2023-11-18
Donations Made Easy Smart Donations HIGH 8.8
CVE-2023-47551

Cross-Site Request Forgery (CSRF) vulnerability in RedNao Donations Made Easy – Smart Donations.This issue affects Donations Made Easy – Smart Donati…

Fix: after 4.0.12
Fix from $1,950 2023-11-18
Image Hover Effects HIGH 8.8
CVE-2023-47552

Cross-Site Request Forgery (CSRF) vulnerability in Labib Ahmed Image Hover Effects – WordPress Plugin.This issue affects Image Hover Effects – WordPr…

Fix: after 5.5
Fix from $1,950 2023-11-18
Preloader Matrix HIGH 8.8
CVE-2023-47685

Cross-Site Request Forgery (CSRF) vulnerability in Lukman Nakib Preloader Matrix.This issue affects Preloader Matrix: from n/a through 2.0.1.

Fix: after 2.0.1
Fix from $1,950 2023-11-18
Code Snippets HIGH 8.8
CVE-2023-47666

Cross-Site Request Forgery (CSRF) vulnerability in Code Snippets Pro Code Snippets.This issue affects Code Snippets: from n/a through 3.5.0.

Fix: after 3.5.0
Fix from $1,950 2023-11-18
Wp Full Stripe Free HIGH 8.8
CVE-2023-47667

Cross-Site Request Forgery (CSRF) vulnerability in Mammothology WP Full Stripe Free.This issue affects WP Full Stripe Free: from n/a through 7.0.16.

Fix: after 1.6.1
Fix from $1,950 2023-11-18
Korea Sns HIGH 8.8
CVE-2023-47670

Cross-Site Request Forgery (CSRF) vulnerability in Jongmyoung Kim Korea SNS.This issue affects Korea SNS: from n/a through 1.6.3.

Fix: after 1.6.3
Fix from $1,950 2023-11-18
Vertical Scroll Recent Registered User HIGH 8.8
CVE-2023-47671

Cross-Site Request Forgery (CSRF) vulnerability in Gopi Ramasamy Vertical scroll recent.This issue affects Vertical scroll recent post: from n/a thro…

Fix: after 9.1
Fix from $1,950 2023-11-18
Wp Category Post List Widget HIGH 8.8
CVE-2023-47672

Cross-Site Request Forgery (CSRF) vulnerability in Swashata WP Category Post List Widget.This issue affects WP Category Post List Widget: from n/a th…

Fix: after 2.0.3
Fix from $1,950 2023-11-18
Plainview Protect Passwords HIGH 8.8
CVE-2023-47664

Cross-Site Request Forgery (CSRF) vulnerability in edward_plainview Plainview Protect Passwords.This issue affects Plainview Protect Passwords: from …

Fix: after 1.4
Fix from $1,950 2023-11-18
Dreamer Cms HIGH 8.8
CVE-2023-48017

Dreamer_cms 4.1.3 is vulnerable to Cross Site Request Forgery (CSRF) via Add permissions to CSRF in Permission Management.

No fix yet
Fix from $1,950 2023-11-18
Epolicy Orchestrator HIGH 8.0
CVE-2023-5444

A Cross Site Request Forgery vulnerability in ePolicy Orchestrator prior to 5.10.0 CP1 Update 2 allows a remote low privilege user to successfully ad…

Fix: 5.10.0+
Fix from $1,950 2023-11-17
Aweber HIGH 8.8
CVE-2023-47757

Missing Authorization, Cross-Site Request Forgery (CSRF) vulnerability in AWeber AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead …

Fix: 7.3.10+
Fix from $1,950 2023-11-17
Cubecart HIGH 8.1
CVE-2023-38130

Cross-site request forgery (CSRF) vulnerability in CubeCart prior to 6.5.3 allows a remote unauthenticated attacker to delete data in the system.

Fix: 6.5.3+
Fix from $1,950 2023-11-17
Arigato Autoresponder And Newsletter HIGH 8.8
CVE-2023-47686

Cross-Site Request Forgery (CSRF) vulnerability in Kiboko Labs Arigato Autoresponder and Newsletter plugin <= 2.7.2.2 versions.

Fix: after 2.7.2.2
Fix from $1,950 2023-11-16
Woo Custom And Sequential Order Number HIGH 8.8
CVE-2023-47687

Cross-Site Request Forgery (CSRF) vulnerability in VJInfotech Woo Custom and Sequential Order Number plugin <= 2.6.0 versions.

Fix: after 2.6.0
Fix from $1,950 2023-11-16
Youtube Speedload HIGH 8.8
CVE-2023-47688

Cross-Site Request Forgery (CSRF) vulnerability in Alexufo Youtube SpeedLoad plugin <= 0.6.3 versions.

Fix: after 0.6.3
Fix from $1,950 2023-11-16
Prefect HIGH 8.8
CVE-2023-6022

Cross-Site Request Forgery (CSRF) in GitHub repository prefecthq/prefect prior to 2.16.5.

Patch available
Fix from $1,950 2023-11-16
Dedecms HIGH 8.8
CVE-2023-43275

Cross-Site Request Forgery (CSRF) vulnerability in DedeCMS v5.7 in 110 backend management interface via /catalog_add.php, allows attackers to create …

No fix yet
Fix from $1,950 2023-11-16
Donations Made Easy Smart Donations MEDIUM 6.1
CVE-2023-47550

Cross-Site Request Forgery (CSRF) vulnerability in RedNao Donations Made Easy – Smart Donations allows Stored XSS.This issue affects Donations Made E…

Fix: after 4.0.12
Fix from $1,600 2023-11-14
Unison Software HIGH 8.8
CVE-2023-39412

Cross-site request forgery in some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network ac…

Fix: 20.14.2.3053 / 20.14.4244+
Fix from $1,950 2023-11-14