Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2023-41851 Cross-Site Request Forgery (CSRF) vulnerability in Dotsquares WP Custom Post Template <= 1.0 versions. Wp Custom Post Template No fix yet Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-41852 Cross-Site Request Forgery (CSRF) vulnerability in MailMunch MailMunch – Grow your Email List plugin <= 3.1.2 versions. Mailmunch after 3.1.2 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-41853 Cross-Site Request Forgery (CSRF) vulnerability in WP iCal Availability plugin <= 1.0.3 versions. Wp Ical Availability after 1.0.3 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-41730 Cross-Site Request Forgery (CSRF) vulnerability in SendPress Newsletters plugin <= 1.22.3.31 versions. Sendpress after 1.22.3.31 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-41694 Cross-Site Request Forgery (CSRF) vulnerability in Realbig Team Realbig For WordPress plugin <= 1.0.3 versions. Realbig after 1.0.3 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-41697 Cross-Site Request Forgery (CSRF) vulnerability in Nikunj Soni Easy WP Cleaner plugin <= 1.9 versions. Easy Wp Cleaner after 1.9 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-41684 Cross-Site Request Forgery (CSRF) vulnerability in Felix Welberg SIS Handball plugin <= 1.0.45 versions. Sis Handball after 1.0.45 Fix from $1,9502023-10-10 HIGH 8.8 CVE-2023-44811 Cross Site Request Forgery (CSRF) vulnerability in MooSocial v.3.1.8 allows a remote attacker to execute arbitrary code and obtain sensitive informat… Moosocial Mitigation only Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-41669 Cross-Site Request Forgery (CSRF) vulnerability in DAEXT Live News plugin <= 1.06 versions. Live News after 1.06 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-41670 Cross-Site Request Forgery (CSRF) vulnerability in Palasthotel (in person: Edward Bock) Use Memcached plugin <= 1.0.4 versions. Use Memcached after 1.0.4 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-41672 Cross-Site Request Forgery (CSRF) vulnerability in Rémi Leclercq Hide admin notices – Admin Notification Center plugin <= 2.3.2 versions. Hide Admin Notices Admin Notification Center Plugin after 2.3.2 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-41667 Cross-Site Request Forgery (CSRF) vulnerability in Ulf Benjaminsson WP-dTree plugin <= 4.4.5 versions. Wp Dtree after 4.4.5 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-41668 Cross-Site Request Forgery (CSRF) vulnerability in Leadster plugin <= 1.1.2 versions. Leadster after 1.1.2 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-41660 Cross-Site Request Forgery (CSRF) vulnerability in WPSynchro WP Synchro plugin <= 1.9.1 versions. Wp Synchro after 1.9.1 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44240 Cross-Site Request Forgery (CSRF) vulnerability in Peter Butler Timthumb Vulnerability Scanner plugin <= 1.54 versions. Timthumb Vulnerability Scanner after 1.54 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44473 Cross-Site Request Forgery (CSRF) vulnerability in Michael Tran Table of Contents Plus plugin <= 2302 versions. Table Of Contents Plus after 2302 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44993 Cross-Site Request Forgery (CSRF) vulnerability in QuantumCloud AI ChatBot plugin <= 4.7.8 versions. Wpbot after 4.7.8 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44246 Cross-Site Request Forgery (CSRF) vulnerability in Matias s Shockingly Simple Favicon plugin <= 1.8.2 versions. Shockingly Simple Favicon after 1.8.2 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44236 Cross-Site Request Forgery (CSRF) vulnerability in Devnath verma WP Captcha plugin <= 2.0.0 versions. Wp Captcha after 2.0.0 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44237 Cross-Site Request Forgery (CSRF) vulnerability in Moriyan Jay WP Site Protector plugin <= 2.0 versions. Wp Site Protector after 2.0 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44238 Cross-Site Request Forgery (CSRF) vulnerability in Joakim Ling Remove slug from custom post type plugin <= 1.0.3 versions. Remove Slug From Custom Post Type after 1.0.3 Fix from $1,9502023-10-09 HIGH 7.5 CVE-2023-3589 A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow wit… Teamwork Cloud No Magic Release Mitigation only Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44231 Cross-Site Request Forgery (CSRF) vulnerability in NickDuncan Contact Form plugin <= 2.0.10 versions. Contact Form after 2.0.10 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44232 Cross-Site Request Forgery (CSRF) vulnerability in Huseyin Berberoglu WP Hide Pages plugin <= 1.0 versions. Wp Hide Pages after 1.0 Fix from $1,9502023-10-09 HIGH 8.8 CVE-2023-44260 Cross-Site Request Forgery (CSRF) vulnerability in Mikk Mihkel Nurges, Rebing OÜ Woocommerce ESTO plugin <= 2.23.1 versions. Woocommerce Esto after 2.23.1 Fix from $1,9502023-10-09 MEDIUM 5.3 CVE-2023-45374 An issue was discovered in the SportsTeams extension for MediaWiki before 1.35.12, 1.36.x through 1.39.x before 1.39.5, and 1.40.x before 1.40.1. It … Mediawiki 1.35.12 / 1.39.5+ Fix from $1,6002023-10-09 HIGH 8.8 CVE-2023-44233 Cross-Site Request Forgery (CSRF) vulnerability in FooPlugins Best WordPress Gallery Plugin – FooGallery plugin <= 2.2.44 versions. Foogallery after 2.2.44 Fix from $1,9502023-10-06 HIGH 8.8 CVE-2023-44243 Cross-Site Request Forgery (CSRF) vulnerability in Dylan Blokhuis Instant CSS plugin <= 1.2.1 versions. Instant Css after 1.2.1 Fix from $1,9502023-10-06 HIGH 8.8 CVE-2023-41654 Cross-Site Request Forgery (CSRF) vulnerability in Andreas Heigl authLdap plugin <= 2.5.8 versions. Authldap after 2.5.8 Fix from $1,9502023-10-06 HIGH 8.8 CVE-2023-41659 Cross-Site Request Forgery (CSRF) vulnerability in Jules Colle, BDWM Responsive Gallery Grid plugin <= 2.3.10 versions. Responsive Gallery Grid after 2.3.10 Fix from $1,9502023-10-06