Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2023-37892 Cross-Site Request Forgery (CSRF) vulnerability in Kemal YAZICI - PluginPress Shortcode IMDB plugin <= 6.0.8 versions. Shortcode Imdb after 6.0.8 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2023-37973 Cross-Site Request Forgery (CSRF) vulnerability in David Pokorny Replace Word plugin <= 2.1 versions. Replace Word after 2.1 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2022-47169 Cross-Site Request Forgery (CSRF) vulnerability in StaxWP Visibility Logic for Elementor plugin <= 2.3.4 versions. Visibility Logic For Elementor after 2.3.4 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2023-25036 Cross-Site Request Forgery (CSRF) vulnerability in akhlesh-nagar, a.Ankit Social Media Icons Widget plugin <= 1.6 versions. Social Media Icons Widget after 1.6 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2022-46857 Cross-Site Request Forgery (CSRF) vulnerability in SiteAlert plugin <= 1.9.7 versions. Sitealert after 1.9.7 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2023-25473 Cross-Site Request Forgery (CSRF) vulnerability in Miro Mannino Flickr Justified Gallery plugin <= 3.5 versions. Flickr Justified Gallery after 3.5 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2023-25475 Cross-Site Request Forgery (CSRF) vulnerability in Vladimir Prelovac Smart YouTube PRO plugin <= 4.3 versions. Smart Youtube Pro after 4.3 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2023-25482 Cross-Site Request Forgery (CSRF) vulnerability in Mike Martel WP Tiles plugin <= 1.1.2 versions. Wp Tiles after 1.1.2 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2022-45828 Cross-Site Request Forgery (CSRF) vulnerability in NooTheme Noo Timetable plugin <= 2.1.3 versions. Noo Timetable after 2.1.3 Fix from $1,9502023-07-18 HIGH 8.8 CVE-2023-37974 Cross-Site Request Forgery (CSRF) vulnerability in Justin Klein WP Social AutoConnect plugin <= 4.6.1 versions. Wp Social Autoconnect 4.6.2+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-37985 Cross-Site Request Forgery (CSRF) vulnerability in FiveStarPlugins Restaurant Menu and Food Ordering plugin <= 2.4.6 versions. Five Star Restaurant Menu 2.4.7+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2022-36424 Cross-Site Request Forgery (CSRF) vulnerability in Nikola Loncar Easy Appointments plugin <= 3.11.9 versions. Easy Appointments after 3.11.9 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2022-38062 Cross-Site Request Forgery (CSRF) vulnerability in Metagauss Download Theme plugin <= 1.0.9 versions. Download Theme after 1.0.9 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-37968 Cross-Site Request Forgery (CSRF) vulnerability in Faboba Falang multilanguage for WordPress plugin <= 1.3.39 versions. Falang after 1.3.39 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2022-47172 Cross-Site Request Forgery (CSRF) vulnerability in HasThemes ShopLentor plugin <= 2.6.2 versions. Woolentor Woocommerce Elementor Addons \+ Builder after 2.6.2 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-34005 Cross-Site Request Forgery (CSRF) vulnerability in Etoile Web Design Front End Users plugin <= 3.2.24 versions. Front End Users after 3.2.24 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-36511 Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Order Barcodes plugin <= 1.6.4 versions. Woocommerce Order Barcodes after 1.6.4 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-36513 Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce AutomateWoo plugin <= 5.7.5 versions. Automatewoo after 5.7.5 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-36514 Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce Shipping Multiple Addresses plugin <= 3.8.5 versions. Shipping Multiple Addresses after 3.8.5 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-31216 Cross-Site Request Forgery (CSRF) vulnerability in Ultimate Member plugin <= 2.6.0 versions. Ultimate Member after 2.6.0 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-3179 The POST SMTP Mailer WordPress plugin before 2.5.7 does not have proper CSRF checks in some AJAX actions, which could allow attackers to make logged … Post Smtp 2.5.7+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-35038 Cross-Site Request Forgery (CSRF) vulnerability in wpexperts.Io WP PDF Generator plugin <= 1.2.2 versions. Wp Pdf Generator 1.2.3+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-35089 Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Recipe Maker For Your Food Blog from Zip Recipes plugin <= 8.0.7 versions. Recipe Maker For Your Food Blog From Zip Recipes 8.0.8+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-35096 Cross-Site Request Forgery (CSRF) vulnerability in myCred plugin <= 2.5 versions. Mycred after 2.5.1 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-35880 Cross-Site Request Forgery (CSRF) vulnerability in WooCommerce WooCommerce Brands plugin <= 1.6.49 versions. Brands 1.6.50+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-27424 Cross-Site Request Forgery (CSRF) vulnerability in Korol Yuriy aka Shra Inactive User Deleter plugin <= 1.59 versions. Inactive User Deleter 1.60+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-22672 Cross-Site Request Forgery (CSRF) vulnerability in Mr.Vibe vSlider Multi Image Slider for WordPress plugin <= 4.1.2 versions. Vslider after 4.1.2 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-23646 Cross-Site Request Forgery (CSRF) vulnerability in A WP Life Album Gallery – WordPress Gallery plugin <= 1.4.9 versions. Album Gallery 1.5.0+ Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-23719 Cross-Site Request Forgery (CSRF) vulnerability in Premmerce plugin <= 1.3.17 versions. Premmerce after 1.3.17 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-27606 Cross-Site Request Forgery (CSRF) vulnerability in Sajjad Hossain WP Reroute Email plugin <= 1.4.6 versions. Wp Reroute Email after 1.4.6 Fix from $1,9502023-07-17