Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2023-46775 Cross-Site Request Forgery (CSRF) vulnerability in Djo Original texts Yandex WebMaster plugin <= 1.18 versions. Original Texts Yandex Webmaster after 1.18 Fix from $1,9502023-11-06 HIGH 8.8 CVE-2023-47182 Cross-Site Request Forgery (CSRF) leading to a Stored Cross-Site Scripting (XSS) vulnerability in Nazmul Hossain Nihal Login Screen Manager plugin <=… Login Screen Manager after 3.5.2 Fix from $1,9502023-11-06 MEDIUM 5.4 CVE-2023-5945 The video carousel slider with lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0. This is due to missing or in… Video Carousel Slider With Lightbox Patch available Fix from $1,6002023-11-03 HIGH 8.8 CVE-2023-42027 IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-site request forgery which coul… Txseries For Multiplatforms Patch available Fix from $1,9502023-11-03 HIGH 8.8 CVE-2023-5898 Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16. Pkp Web Application Library 3.3.0-16+ Fix from $1,9502023-11-01 HIGH 8.8 CVE-2023-5899 Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16. Pkp Web Application Library 3.3.0-16+ Fix from $1,9502023-11-01 HIGH 8.8 CVE-2023-5893 Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16. Pkp Web Application Library 3.3.0-16+ Fix from $1,9502023-11-01 HIGH 8.8 CVE-2023-5897 Cross-Site Request Forgery (CSRF) in GitHub repository pkp/customLocale prior to 1.2.0-1. Customlocale 1.2.0-1+ Fix from $1,9502023-11-01 MEDIUM 6.8 CVE-2023-45670 Frigate is an open source network video recorder. Prior to version 0.13.0 Beta 3, the `config/save` and `config/set` endpoints of Frigate do not impl… Frigate after 0.13.0 Fix from $1,6002023-10-30 HIGH 8.8 CVE-2023-42323 Cross Site Request Forgery (CSRF) vulnerability in DouHaocms v.3.3 allows a remote attacker to execute arbitrary code via the adminAction.class.php f… Douhaocms No fix yet Fix from $1,9502023-10-30 CRITICAL 9.8 CVE-2023-43649 baserCMS is a website development framework. Prior to version 4.8.0, there is a cross site request forgery vulnerability in the content preview featu… Basercms 4.8.0+ Fix from $2,3002023-10-30 HIGH 8.8 CVE-2023-5820 The Thumbnail Slider With Lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0. This is due to missing or incorre… Thumbnail Slider With Lightbox Patch available Fix from $1,9502023-10-27 HIGH 8.8 CVE-2023-46375 ZenTao Biz version 4.1.3 and before is vulnerable to Cross Site Request Forgery (CSRF). Biz after 4.1.3 Fix from $1,9502023-10-27 MEDIUM 6.5 CVE-2023-42188 IceCMS v2.0.1 is vulnerable to Cross Site Request Forgery (CSRF). Icecms No fix yet Fix from $1,6002023-10-27 HIGH 8.8 CVE-2023-45317 The application interface allows users to perform certain actions via HTTP requests without performing any validity checks to verify the requests. … Analog Fm Transmitter Exc5000gx Firmware Mitigation only Fix from $1,9502023-10-26 HIGH 8.8 CVE-2023-5802 Cross-Site Request Forgery (CSRF) vulnerability in Mihai Iova WordPress Knowledge base & Documentation Plugin – WP Knowledgebase plugin <= 1.3.4 vers… Wp Knowledgebase after 1.3.4 Fix from $1,9502023-10-26 HIGH 8.8 CVE-2023-46189 Cross-Site Request Forgery (CSRF) vulnerability in Simple Calendar – Google Calendar Plugin <= 3.2.5 versions. Simple Calendar 3.2.6+ Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46190 Cross-Site Request Forgery (CSRF) vulnerability in Novo-media Novo-Map : your WP posts on custom google maps plugin <= 1.1.2 versions. Novo Map\ after 1.1.2 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46191 Cross-Site Request Forgery (CSRF) vulnerability in Niels van Renselaar Open Graph Metabox plugin <= 1.4.4 versions. Open Graph Metabox after 1.4.4 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46193 Cross-Site Request Forgery (CSRF) vulnerability in Internet Marketing Ninjas Internal Link Building plugin <= 1.2.3 versions. Internal Link Building after 1.2.3 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46198 Cross-Site Request Forgery (CSRF) vulnerability in Scientech It Solution Appointment Calendar plugin <= 2.9.6 versions. Appointment Calendar after 2.9.6 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46202 Cross-Site Request Forgery (CSRF) vulnerability in Jeff Sherk Auto Login New User After Registration plugin <= 1.9.6 versions. Auto Login New User After Registration after 1.9.6 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46204 Cross-Site Request Forgery (CSRF) vulnerability in Muller Digital Inc. Duplicate Theme plugin <= 0.1.6 versions. Duplicate Theme after 0.1.6 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46150 Cross-Site Request Forgery (CSRF) vulnerability in WP Military WP Radio plugin <= 3.1.9 versions. Wp Radio after 3.1.9 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46151 Cross-Site Request Forgery (CSRF) vulnerability in AWESOME TOGI Product Category Tree plugin <= 2.5 versions. Product Category Tree after 2.5 Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46152 Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professional plugin <= 1.0.7.1 versions. Wolf Wordpress Posts Bulk Editor And Products Manager Professional 1.0.7.2+ Fix from $1,9502023-10-25 HIGH 8.8 CVE-2023-46085 Cross-Site Request Forgery (CSRF) vulnerability in Wpmet Wp Ultimate Review plugin <= 2.2.4 versions. Wp Ultimate Review after 2.2.4 Fix from $1,9502023-10-22 HIGH 8.8 CVE-2023-46089 Cross-Site Request Forgery (CSRF) vulnerability in Lee Le @ Userback Userback plugin <= 1.0.13 versions. Userback after 1.0.13 Fix from $1,9502023-10-22 HIGH 8.8 CVE-2023-46095 Cross-Site Request Forgery (CSRF) vulnerability in Chetan Gole Smooth Scroll Links [SSL] plugin <= 1.1.0 versions. Smooth Scroll Links after 1.1.0 Fix from $1,9502023-10-22 HIGH 8.8 CVE-2023-46078 Cross-Site Request Forgery (CSRF) vulnerability in PluginEver WC Serial Numbers plugin <= 1.6.3 versions. Wc Serial Numbers after 1.6.3 Fix from $1,9502023-10-21