Vulnerability index

Browse CVEs

7,373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 7.1 CVE-2025-25138 Cross-Site Request Forgery (CSRF) vulnerability in Rishi On Page SEO + Whatsapp Chat Button ops-robots-txt allows Stored XSS.This issue affects On Pa… Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25139 Cross-Site Request Forgery (CSRF) vulnerability in Cynob IT Consultancy WP Custom Post RSS Feed wp-custom-post-rss-feed allows Stored XSS.This issue … Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25123 Cross-Site Request Forgery (CSRF) vulnerability in xdark Easy Related Posts easy-related-posts allows Stored XSS.This issue affects Easy Related Post… Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25125 Cross-Site Request Forgery (CSRF) vulnerability in CyrilG Fyrebox Quizzes fyrebox-shortcode allows Stored XSS.This issue affects Fyrebox Quizzes: fro… Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25126 Cross-Site Request Forgery (CSRF) vulnerability in zmseo ZMSEO zmseo allows Stored XSS.This issue affects ZMSEO: from n/a through <= 1.14.1. Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25104 Cross-Site Request Forgery (CSRF) vulnerability in mraliende URL-Preview-Box good-url-preview-box allows Cross Site Request Forgery.This issue affect… Mitigation only Fix from $1,9502025-02-07 CRITICAL 9.6 CVE-2025-25106 Cross-Site Request Forgery (CSRF) vulnerability in FancyWP Starter Templates by FancyWP starter-templates allows Cross Site Request Forgery.This issu… Mitigation only Fix from $2,3002025-02-07 CRITICAL 9.6 CVE-2025-25107 Cross-Site Request Forgery (CSRF) vulnerability in sainwp OneStore Sites onestore-sites allows Cross Site Request Forgery.This issue affects OneStore… Mitigation only Fix from $2,3002025-02-07 MEDIUM 5.4 CVE-2025-25111 Cross-Site Request Forgery (CSRF) vulnerability in WP Spell Check WP Spell Check wp-spell-check allows Cross Site Request Forgery.This issue affects … Mitigation only Fix from $1,6002025-02-07 CRITICAL 9.6 CVE-2025-25101 Cross-Site Request Forgery (CSRF) vulnerability in MetricThemes Munk Sites munk-sites allows Cross Site Request Forgery.This issue affects Munk Sites… Mitigation only Fix from $2,3002025-02-07 HIGH 7.1 CVE-2025-25088 Cross-Site Request Forgery (CSRF) vulnerability in blackus3r WP Keyword Monitor wp-keyword-monitor allows Cross Site Request Forgery.This issue affec… Mitigation only Fix from $1,9502025-02-07 MEDIUM 6.1 CVE-2025-25093 Cross-Site Request Forgery (CSRF) vulnerability in paulswarthout Child Themes Helper child-themes-helper allows Path Traversal.This issue affects Chi… No fix yet Fix from $1,6002025-02-07 HIGH 7.1 CVE-2025-25072 Cross-Site Request Forgery (CSRF) vulnerability in thunderbax WP Admin Custom Page wp-admin-custom-page allows Stored XSS.This issue affects WP Admin… Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25074 Cross-Site Request Forgery (CSRF) vulnerability in Nirmal Kumar Ram WP Social Stream wp-social-stream allows Stored XSS.This issue affects WP Social … Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25075 Cross-Site Request Forgery (CSRF) vulnerability in Venugopal Show notice or message on admin area show-notice-or-message-on-admin-area allows Stored … Mitigation only Fix from $1,9502025-02-07 HIGH 7.1 CVE-2025-25071 Cross-Site Request Forgery (CSRF) vulnerability in topplugins Vignette Ads vignete-ads allows Stored XSS.This issue affects Vignette Ads: from n/a th… Mitigation only Fix from $1,9502025-02-07 MEDIUM 5.4 CVE-2024-57429 A cross-site request forgery (CSRF) vulnerability in the pjActionUpdate function of PHPJabbers Cinema Booking System v2.0 allows remote attackers to … Cinema Booking System No fix yet Fix from $1,6002025-02-06 MEDIUM 6.5 CVE-2024-35138 IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site request forgery which could allow an attacker to… Security Verify Access after 10.0.8 Fix from $1,6002025-02-04 MEDIUM 6.1 CVE-2024-13510 The ShopSite plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.5.10. This is due to missing or… Mitigation only Fix from $1,6002025-02-04 MEDIUM 6.5 CVE-2024-13356 The DSGVO All in one for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.6. This is due t… Dsgvo All In One For Wp 4.7+ Fix from $1,6002025-02-04 MEDIUM 6.1 CVE-2024-13115 The WP Projects Portfolio with Client Testimonials WordPress plugin through 3.0 does not have CSRF check in some places, and is missing sanitisation … Wp Projects Portfolio With Client Testimonials after 3.0 Fix from $1,6002025-02-04 HIGH 8.8 CVE-2024-56901 A Cross-Site Request Forgery (CSRF) vulnerability in Geovision GV-ASWeb application with the version 6.1.1.0 or less that allows attackers to arbitra… Mitigation only Fix from $1,9502025-02-03 HIGH 8.1 CVE-2024-56903 Geovision GV-ASWeb with the version 6.1.1.0 or less allows attackers to modify POST request method with the GET against critical functionalities, suc… Mitigation only Fix from $1,9502025-02-03 HIGH 7.1 CVE-2025-22703 Cross-Site Request Forgery (CSRF) vulnerability in manuelvicedo Forge – Front-End Page Builder forge allows Stored XSS.This issue affects Forge – Fro… Mitigation only Fix from $1,9502025-02-03 HIGH 7.1 CVE-2025-22688 Cross-Site Request Forgery (CSRF) vulnerability in Ederson Peka Unlimited Page Sidebars unlimited-page-sidebars allows Stored XSS.This issue affects … Mitigation only Fix from $1,9502025-02-03 HIGH 7.1 CVE-2025-22690 Cross-Site Request Forgery (CSRF) vulnerability in DigiTimber DigiTimber cPanel Integration digitimber-cpanel-integration allows Stored XSS.This issu… Mitigation only Fix from $1,9502025-02-03 HIGH 7.1 CVE-2025-22685 Cross-Site Request Forgery (CSRF) vulnerability in CheGevara29 Tags to Keywords tags-to-meta-keywords allows Stored XSS.This issue affects Tags to Ke… Mitigation only Fix from $1,9502025-02-03 HIGH 8.8 CVE-2023-38739 IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site request forgery which could allow an atta… Sterling B2b Integrator after 6.2.0.3 Fix from $1,9502025-01-31 HIGH 7.1 CVE-2025-24749 Cross-Site Request Forgery (CSRF) vulnerability in Overt Software Solutions LTD EZPZ SAML SP Single Sign On (SSO) allows Cross Site Request Forgery. … Mitigation only Fix from $1,9502025-01-31 HIGH 7.1 CVE-2025-24549 Cross-Site Request Forgery (CSRF) vulnerability in Mahbubur Rahman Post Meta post-meta allows Reflected XSS.This issue affects Post Meta: from n/a th… Mitigation only Fix from $1,9502025-01-31