Vulnerability index

Browse CVEs

7,373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
MEDIUM 5.4 CVE-2025-32249 Cross-Site Request Forgery (CSRF) vulnerability in Designinvento DirectoryPress directorypress allows Cross Site Request Forgery.This issue affects D… Mitigation only Fix from $1,6002025-04-04 MEDIUM 5.4 CVE-2025-32250 Cross-Site Request Forgery (CSRF) vulnerability in rollbar Rollbar rollbar allows Cross Site Request Forgery.This issue affects Rollbar: from n/a thr… Mitigation only Fix from $1,6002025-04-04 MEDIUM 6.5 CVE-2025-32241 Cross-Site Request Forgery (CSRF) vulnerability in CleverReach® Official CleverReach Plugin for WooCommerce cleverreach-wc allows Cross Site Request … Mitigation only Fix from $1,6002025-04-04 MEDIUM 5.4 CVE-2025-32247 Cross-Site Request Forgery (CSRF) vulnerability in ABCdatos AI Content Creator ai-content-creator allows Cross Site Request Forgery.This issue affect… Mitigation only Fix from $1,6002025-04-04 MEDIUM 5.4 CVE-2025-32248 Cross-Site Request Forgery (CSRF) vulnerability in SwiftXR SwiftXR (3D/AR/VR) Viewer swiftxr-3darvr-viewer allows Cross Site Request Forgery.This iss… Mitigation only Fix from $1,6002025-04-04 HIGH 7.1 CVE-2025-32112 Cross-Site Request Forgery (CSRF) vulnerability in OTWthemes Sidebar Manager Light sidebar-manager-light allows Cross Site Request Forgery.This issue… Mitigation only Fix from $1,9502025-04-04 HIGH 7.1 CVE-2025-32113 Cross-Site Request Forgery (CSRF) vulnerability in Renzo Tejada Libro de Reclamaciones y Quejas libro-de-reclamaciones-y-quejas allows Cross Site Req… Mitigation only Fix from $1,9502025-04-04 MEDIUM 5.4 CVE-2025-2797 The Woffice Core plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.4.21. This is due to missin… Woffice 5.4.22+ Fix from $1,6002025-04-04 HIGH 7.1 CVE-2025-30908 Cross-Site Request Forgery (CSRF) vulnerability in Shamalli Web Directory Free web-directory-free allows Stored XSS.This issue affects Web Directory … Mitigation only Fix from $1,9502025-04-03 MEDIUM 6.1 CVE-2025-2299 The LuckyWP Table of Contents plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.1.10. This is … Luckywp Table Of Contents 2.1.11+ Fix from $1,6002025-04-03 MEDIUM 6.5 CVE-2025-3153 Concrete CMS version 9 below 9.4.0RC2 and versions below 8.5.20 are vulnerable to CSRF and XSS in the Concrete CMS Address attribute because addresse… Concrete Cms 8.5.20 / 9.4.0+ Fix from $1,6002025-04-03 HIGH 8.8 CVE-2024-56474 IBM TXSeries for Multiplatforms 9.1 and 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unaut… Txseries For Multiplatforms Mitigation only Fix from $1,9502025-04-02 MEDIUM 6.1 CVE-2025-3099 The Advanced Search by My Solr Server plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0.5. T… Mitigation only Fix from $1,6002025-04-02 HIGH 7.1 CVE-2025-31906 Cross-Site Request Forgery (CSRF) vulnerability in ProfitShare.ro WP Profitshare wp-profitshare allows Stored XSS.This issue affects WP Profitshare: … Mitigation only Fix from $1,9502025-04-01 HIGH 7.1 CVE-2025-31908 Cross-Site Request Forgery (CSRF) vulnerability in Sami Ahmed Siddiqui JSON Structuring Markup json-structuring-markup allows Stored XSS.This issue a… Mitigation only Fix from $1,9502025-04-01 HIGH 7.1 CVE-2025-31904 Cross-Site Request Forgery (CSRF) vulnerability in Infoway LLC Ebook Downloader ebook-downloader allows Cross Site Request Forgery.This issue affects… Mitigation only Fix from $1,9502025-04-01 MEDIUM 5.4 CVE-2025-31859 Cross-Site Request Forgery (CSRF) vulnerability in Feedbucket Feedbucket – Website Feedback Tool feedbucket allows Cross Site Request Forgery.This is… Mitigation only Fix from $1,6002025-04-01 HIGH 8.8 CVE-2025-31828 Cross-Site Request Forgery (CSRF) vulnerability in alextselegidis Easy!Appointments easyappointments allows Cross Site Request Forgery.This issue aff… Easy\!appointments after 1.4.2 Fix from $1,9502025-04-01 MEDIUM 5.4 CVE-2025-31785 Cross-Site Request Forgery (CSRF) vulnerability in Clearbit Clearbit Reveal clearbit allows Cross Site Request Forgery.This issue affects Clearbit Re… Mitigation only Fix from $1,6002025-04-01 MEDIUM 5.4 CVE-2025-31779 Cross-Site Request Forgery (CSRF) vulnerability in Jonathan Daggerhart Query Wrangler query-wrangler allows Cross Site Request Forgery.This issue aff… Mitigation only Fix from $1,6002025-04-01 MEDIUM 6.5 CVE-2025-31751 Cross-Site Request Forgery (CSRF) vulnerability in doit Breaking News WP breaking-news-wp allows Cross Site Request Forgery.This issue affects Breaki… Mitigation only Fix from $1,6002025-04-01 MEDIUM 6.8 CVE-2025-31688 Cross-Site Request Forgery (CSRF) vulnerability in Drupal Configuration Split allows Cross Site Request Forgery.This issue affects Configuration Spli… Configuration Split 1.10.0 / 2.0.2+ Fix from $1,6002025-03-31 HIGH 8.1 CVE-2025-31689 Cross-Site Request Forgery (CSRF) vulnerability in Drupal General Data Protection Regulation allows Cross Site Request Forgery.This issue affects Gen… General Data Protection Regulation 3.0.1 / 3.1.2+ Fix from $1,9502025-03-31 HIGH 8.8 CVE-2025-31690 Cross-Site Request Forgery (CSRF) vulnerability in Drupal Cache Utility allows Cross Site Request Forgery.This issue affects Cache Utility: from 0.0.… Cache Utility 1.2.1+ Fix from $1,9502025-03-31 HIGH 8.8 CVE-2025-31677 Cross-Site Request Forgery (CSRF) vulnerability in Drupal AI (Artificial Intelligence) allows Cross Site Request Forgery.This issue affects AI (Artif… Artificial Intelligence 1.0.2+ Fix from $1,9502025-03-31 MEDIUM 6.8 CVE-2025-31680 Cross-Site Request Forgery (CSRF) vulnerability in Drupal Matomo Analytics allows Cross Site Request Forgery.This issue affects Matomo Analytics: fro… Matomo Analytics 8.x-1.24+ Fix from $1,6002025-03-31 MEDIUM 6.8 CVE-2025-31683 Cross-Site Request Forgery (CSRF) vulnerability in Drupal Google Tag allows Cross Site Request Forgery.This issue affects Google Tag: from 0.0.0 befo… Google Tag 2.0.8 / 8.x-1.8+ Fix from $1,6002025-03-31 MEDIUM 6.8 CVE-2025-31684 Cross-Site Request Forgery (CSRF) vulnerability in Drupal OAuth2 Client allows Cross Site Request Forgery.This issue affects OAuth2 Client: from 0.0.… Oauth2 Client 4.1.3+ Fix from $1,6002025-03-31 HIGH 7.1 CVE-2025-31623 Cross-Site Request Forgery (CSRF) vulnerability in richtexteditor Rich Text Editor richtexteditor allows Stored XSS.This issue affects Rich Text Edit… Mitigation only Fix from $1,9502025-03-31 HIGH 7.1 CVE-2025-31613 Cross-Site Request Forgery (CSRF) vulnerability in Aboobacker. AB Google Map Travel ab-google-map-travel allows Cross Site Request Forgery.This issu… Mitigation only Fix from $1,9502025-03-31