Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2023-38349 PNP4Nagios through 81ebfc5 lacks CSRF protection in the AJAX controller. This affects 0.6.26. Pnp4nagios Patch available Fix from $1,9502023-07-15 HIGH 8.0 CVE-2023-32761 Cross Site Request Forgery (CSRF) vulnerability in Archer Platform before v.6.13 and fixed in v.6.12.0.6 and v.6.13.0 allows an authenticated attacke… Archer 6.12.0.6+ Fix from $1,9502023-07-14 HIGH 8.8 CVE-2023-37562 Cross-site request forgery (CSRF) vulnerability in exists in WTC-C1167GC-B v1.17 and earlier, and WTC-C1167GC-W v1.17 and earlier. If a user views a … Wtc C1167gc B Firmware after 1.17 Fix from $1,9502023-07-13 HIGH 8.8 CVE-2023-37962 A cross-site request forgery (CSRF) vulnerability in Jenkins Benchmark Evaluator Plugin 1.0.1 and earlier allows attackers to connect to an attacker-… Benchmark Evaluator after 1.0.1 Fix from $1,9502023-07-12 HIGH 8.8 CVE-2023-37964 A cross-site request forgery (CSRF) vulnerability in Jenkins ElasticBox CI Plugin 5.0.1 and earlier allows attackers to connect to an attacker-specif… Elasticbox Ci after 5.0.1 Fix from $1,9502023-07-12 MEDIUM 6.5 CVE-2023-37952 A cross-site request forgery (CSRF) vulnerability in Jenkins mabl Plugin 0.0.46 and earlier allows attackers to connect to an attacker-specified URL … Mabl after 0.0.46 Fix from $1,6002023-07-12 MEDIUM 6.5 CVE-2023-37955 A cross-site request forgery (CSRF) vulnerability in Jenkins Test Results Aggregator Plugin 1.2.13 and earlier allows attackers to connect to an atta… Test Results Aggregator after 1.2.13 Fix from $1,6002023-07-12 HIGH 8.8 CVE-2023-37957 A cross-site request forgery (CSRF) vulnerability in Jenkins Pipeline restFul API Plugin 0.11 and earlier allows attackers to connect to an attacker-… Pipeline Restful Api after 0.11 Fix from $1,9502023-07-12 HIGH 8.8 CVE-2023-37958 A cross-site request forgery (CSRF) vulnerability in Jenkins Sumologic Publisher Plugin 2.2.1 and earlier allows attackers to connect to an attacker-… Sumologic Publisher after 2.2.1 Fix from $1,9502023-07-12 HIGH 8.8 CVE-2023-37961 A cross-site request forgery (CSRF) vulnerability in Jenkins Assembla Auth Plugin 1.14 and earlier allows attackers to trick users into logging in to… Assembla after 1.14 Fix from $1,9502023-07-12 HIGH 8.8 CVE-2023-3011 The ARMember plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.0.5. This is due to missing or inco… Armember 4.0.6+ Fix from $1,9502023-07-12 HIGH 8.8 CVE-2023-3627 Cross-Site Request Forgery (CSRF) in GitHub repository salesagility/suitecrm-core prior to 8.3.1. Suitecrm 8.3.1+ Fix from $1,9502023-07-11 HIGH 8.1 CVE-2023-37596 Cross Site Request Forgery (CSRF) vulnerability in issabel-pbx v.4.0.0-6 allows a remote attacker to cause a denial of service via a crafted script t… Pbx No fix yet Fix from $1,9502023-07-11 HIGH 8.1 CVE-2023-37597 Cross Site Request Forgery (CSRF) vulnerability in issabel-pbx v.4.0.0-6 allows a remote attacker to cause a denial of service via the delete user gr… Pbx No fix yet Fix from $1,9502023-07-11 CRITICAL 9.6 CVE-2023-2746 The Rockwell Automation Enhanced HIM software contains an API that the application uses that is not protected sufficiently and uses incorrect Cross… Enhanced Him No fix yet Fix from $2,3002023-07-11 HIGH 8.8 CVE-2023-35773 Cross-Site Request Forgery (CSRF) vulnerability in Danny Hearnah - ChubbyNinjaa Template Debugger plugin <= 3.1.2 versions. Template Debugger after 3.1.2 Fix from $1,9502023-07-11 HIGH 8.8 CVE-2023-36522 Cross-Site Request Forgery (CSRF) vulnerability in WePupil Quiz Expert plugin <= 1.5.0 versions. Quiz Expert Easy Quiz Maker\, Exam And Test Manager after 1.5.0 Fix from $1,9502023-07-11 HIGH 8.8 CVE-2023-36690 Cross-Site Request Forgery (CSRF) vulnerability in VibeThemes WPLMS theme <= 4.900 versions. Wordpress Learning Management System after 4.900 Fix from $1,9502023-07-11 MEDIUM 6.5 CVE-2023-24417 Cross-Site Request Forgery (CSRF) vulnerability in tiggersWelt.Net Worthy plugin <= 1.6.5-6497609 versions. Worthy after 1.6.5-6497609 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-25443 Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Button Generator – easily Button Builder plugin <= 2.3.5 versions. Button Generator after 2.3.5 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-25706 Cross-Site Request Forgery (CSRF) vulnerability in Pagup WordPress Robots.Txt optimization plugin <= 1.4.5 versions. Better Robots.txt after 1.4.5 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-32104 Cross-Site Request Forgery (CSRF) vulnerability in Mark Tilly MyCurator Content Curation plugin <= 3.74 versions. Mycurator Content Curation after 3.74 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-34029 Cross-Site Request Forgery (CSRF) vulnerability in Prem Tiwari Disable WordPress Update Notifications and auto-update Email Notifications plugin <= 2… Disable Wordpress Update Notifications And Auto Update Email Notifications after 2.3.3 Fix from $1,6002023-07-11 HIGH 8.8 CVE-2023-35091 Cross-Site Request Forgery (CSRF) vulnerability in StoreApps Stock Manager for WooCommerce plugin <= 2.10.0 versions. Stock Manager For Woocommerce after 2.10.0 Fix from $1,9502023-07-11 MEDIUM 6.5 CVE-2023-23671 Cross-Site Request Forgery (CSRF) vulnerability in Muneeb Layer Slider plugin <= 1.1.9.7 versions. Layer Slider after 1.1.9.7 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-34185 Cross-Site Request Forgery (CSRF) vulnerability in John Brien WordPress NextGen GalleryView plugin <= 0.5.5 versions. Wordpress Nextgen Galleryview after 0.5.5 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-35047 Cross-Site Request Forgery (CSRF) vulnerability in AREOI All Bootstrap Blocks plugin <= 1.3.6 versions. All Bootstrap Blocks after 1.3.6 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-35778 Cross-Site Request Forgery (CSRF) vulnerability in Neha Goel Recent Posts Slider plugin <= 1.1 versions. Recent Posts Slider after 1.1 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-35780 Cross-Site Request Forgery (CSRF) vulnerability in Andy Whalen Galleria plugin <= 1.0.3 versions. Galleria after 1.0.3 Fix from $1,6002023-07-11 MEDIUM 6.5 CVE-2023-36687 Cross-Site Request Forgery (CSRF) vulnerability in Andrea Tarantini Menubar plugin <= 5.8.2 versions. Menubar after 5.8.2 Fix from $1,6002023-07-11