Vulnerability index

Browse CVEs

7,373 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2024-26273 Cross-site request forgery (CSRF) vulnerability in the content page editor in Liferay Portal 7.4.0 through 7.4.3.103, and Liferay DXP 2023.Q4.0 throu… Digital Experience Platform 7.4.3.104 / 2023.q3.6+ Fix from $1,9502024-10-22 MEDIUM 5.4 CVE-2024-9588 The Category and Taxonomy Meta Fields plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.0. This … Category And Taxonomy Meta Fields after 1.0.0 Fix from $1,6002024-10-22 HIGH 8.8 CVE-2024-43945 Cross-Site Request Forgery (CSRF) vulnerability in Latepoint LatePoint allows Cross Site Request Forgery.This issue affects LatePoint: from n/a throu… Latepoint after 4.9.91 Fix from $1,9502024-10-21 HIGH 8.8 CVE-2024-49628 Cross-Site Request Forgery (CSRF) vulnerability in whiletrue Most And Least Read Posts Widget most-and-least-read-posts-widget allows Cross Site Requ… Most And Least Read Posts Widget 2.5.19+ Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49275 Cross-Site Request Forgery (CSRF) vulnerability in Northern Beaches Websites IdeaPush ideapush allows Cross Site Request Forgery.This issue affects I… Ideapush 8.71+ Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49290 Cross-Site Request Forgery (CSRF) vulnerability in Gora Tech LLC Cooked Pro allows Cross Site Request Forgery.This issue affects Cooked Pro: from n/a… Cooked 1.8.0+ Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49306 Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Content Copy Protection & No Right Click wp-content-copy-protector allows Cross Site Req… Wp Content Copy Protection \& No Right Click 3.6.1+ Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49627 Cross-Site Request Forgery (CSRF) vulnerability in Noor Alam WordPress Image SEO allows Cross Site Request Forgery.This issue affects WordPress Image… Wordpress Image Seo after 1.1.4 Fix from $1,9502024-10-20 CRITICAL 9.8 CVE-2024-47634 Cross-Site Request Forgery (CSRF) vulnerability in Streamline CartBounty – Save and recover abandoned carts for WooCommerce woo-save-abandoned-carts … Cartbounty 8.2.1+ Fix from $2,3002024-10-20 HIGH 8.8 CVE-2024-49250 Cross-Site Request Forgery (CSRF) vulnerability in Syed Balkhi Table of Contents Plus table-of-contents-plus allows Cross Site Request Forgery.This i… Table Of Contents Plus after 2408 Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49272 Cross-Site Request Forgery (CSRF) vulnerability in wpweb Social Auto Poster social-auto-poster allows Cross Site Request Forgery.This issue affects S… Social Auto Poster 5.3.16+ Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49274 Cross-Site Request Forgery (CSRF) vulnerability in Infomaniak Network VOD Infomaniak vod-infomaniak allows Cross Site Request Forgery.This issue affe… Vod Infomaniak 1.5.8+ Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49617 Cross-Site Request Forgery (CSRF) vulnerability in anciwasim Back Link Tracker back-link-tracker allows Blind SQL Injection.This issue affects Back L… Back Link Tracker after 1.0.0 Fix from $1,9502024-10-20 MEDIUM 6.1 CVE-2024-49629 Cross-Site Request Forgery (CSRF) vulnerability in Fahad Mahmood Endless Posts Navigation endless-posts-navigation allows Stored XSS.This issue affec… Endless Posts Navigation 2.2.8+ Fix from $1,6002024-10-20 HIGH 8.8 CVE-2024-49615 Cross-Site Request Forgery (CSRF) vulnerability in Henrique Rodrigues SafetyForms safetymails-forms allows Blind SQL Injection.This issue affects Saf… Safetyforms after 1.0.0 Fix from $1,9502024-10-20 MEDIUM 6.1 CVE-2024-49335 Cross-Site Request Forgery (CSRF) vulnerability in sh4d0w28 GoogleDrive folder list googledrive-folder-list allows Stored XSS.This issue affects Goog… Googledrive Folder List after 2.2.2 Fix from $1,6002024-10-20 MEDIUM 6.1 CVE-2024-49605 Cross-Site Request Forgery (CSRF) vulnerability in Stefan Nour AVChat Video Chat avchat-3 allows Stored XSS.This issue affects AVChat Video Chat: fro… Avchat Video Chat after 2.2 Fix from $1,6002024-10-20 HIGH 8.8 CVE-2024-49621 Cross-Site Request Forgery (CSRF) vulnerability in aatmaadhikari APA Register Newsletter Form apa-register-newsletter-form allows SQL Injection.This … Apa Register Newsletter Form after 1.0.0 Fix from $1,9502024-10-20 HIGH 8.8 CVE-2024-49622 Cross-Site Request Forgery (CSRF) vulnerability in aatmaadhikari Apa Banner Slider apa-banner-slider allows SQL Injection.This issue affects Apa Bann… Apa Banner Slider after 1.0.0 Fix from $1,9502024-10-20 HIGH 7.1 CVE-2024-49313 Cross-Site Request Forgery (CSRF) vulnerability in rudestan VKontakte Wall Post vkontakte-wall-post allows Stored XSS.This issue affects VKontakte Wa… Mitigation only Fix from $1,9502024-10-17 MEDIUM 5.4 CVE-2024-49304 Cross-Site Request Forgery (CSRF) vulnerability in DOTonPAPER Pinpoint Booking System booking-system allows Stored XSS.This issue affects Pinpoint Bo… Mitigation only Fix from $1,6002024-10-17 MEDIUM 6.1 CVE-2024-49237 Cross-Site Request Forgery (CSRF) vulnerability in ahmeti Ahmeti Wp Timeline ahmeti-wp-timeline allows Stored XSS.This issue affects Ahmeti Wp Timeli… Ahmeti Wp Timeline after 5.1 Fix from $1,6002024-10-17 MEDIUM 6.1 CVE-2024-49220 Cross-Site Request Forgery (CSRF) vulnerability in Nikel Cookie Scanner cookie-scanner allows Cross Site Request Forgery.This issue affects Cookie Sc… Cookie Scanner after 1.1 Fix from $1,6002024-10-17 MEDIUM 6.1 CVE-2024-49221 Cross-Site Request Forgery (CSRF) vulnerability in julian.weinert cSlider cslider allows Cross Site Request Forgery.This issue affects cSlider: from … Cslider after 2.4.2 Fix from $1,6002024-10-17 MEDIUM 6.1 CVE-2024-49223 Cross-Site Request Forgery (CSRF) vulnerability in shibulijack CJ Change Howdy cj-change-howdy allows Cross Site Request Forgery.This issue affects C… Cj Change Howdy after 3.3.1 Fix from $1,6002024-10-17 HIGH 7.1 CVE-2024-48048 Cross-Site Request Forgery (CSRF) vulnerability in GabbyKhrmon Wsify Widget wsify-widget allows Stored XSS.This issue affects Wsify Widget: from n/a … Mitigation only Fix from $1,9502024-10-17 MEDIUM 6.5 CVE-2024-48031 Cross-Site Request Forgery (CSRF) vulnerability in sumitsurai Featured Posts with Multiple Custom Groups (FPMCG) featured-posts-with-multiple-custom-… Mitigation only Fix from $1,6002024-10-17 MEDIUM 5.4 CVE-2024-48037 Cross-Site Request Forgery (CSRF) vulnerability in A WP Life Contact Form Widget new-contact-form-widget allows Cross Site Request Forgery.This issue… Mitigation only Fix from $1,6002024-10-17 MEDIUM 6.1 CVE-2024-48758 dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the addPro parameter of the component doAdminAction.php which al… Dingfanzu Cms No fix yet Fix from $1,6002024-10-16 MEDIUM 6.5 CVE-2024-20421 A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remot… Ata 191 Firmware 11.2.5 / 12.0.2+ Fix from $1,6002024-10-16