Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2024-31424 Cross-Site Request Forgery (CSRF) vulnerability in Hamid Alinia Login with phone number login-with-phone-number.This issue affects Login with phone n… Mitigation only Fix from $1,9502024-04-15 MEDIUM 5.4 CVE-2024-31425 Cross-Site Request Forgery (CSRF) vulnerability in TMS Amelia.This issue affects Amelia: from n/a through 1.0.95. Mitigation only Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32103 Cross-Site Request Forgery (CSRF) vulnerability in Siteimprove.This issue affects Siteimprove: from n/a through 2.0.6. No fix yet Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32096 Cross-Site Request Forgery (CSRF) vulnerability in DAEV.Tech WP Migration Plugin DB & Files – WP Synchro.This issue affects WP Migration Plugin DB & … Mitigation only Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32097 Cross-Site Request Forgery (CSRF) vulnerability in Eyal Fitoussi GEO my WordPress.This issue affects GEO my WordPress: from n/a through 4.1. No fix yet Fix from $1,6002024-04-15 MEDIUM 6.5 CVE-2024-32091 Cross-Site Request Forgery (CSRF) vulnerability in Tonjoo Sangar Slider.This issue affects Sangar Slider: from n/a through 1.3.2. Mitigation only Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32092 Cross-Site Request Forgery (CSRF) vulnerability in Michael Bester Kimili Flash Embed.This issue affects Kimili Flash Embed: from n/a through 2.5.3. No fix yet Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32093 Cross-Site Request Forgery (CSRF) vulnerability in Nose Graze Novelist.This issue affects Novelist: from n/a through 1.2.2. Mitigation only Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-31941 Cross-Site Request Forgery (CSRF) vulnerability in CodePeople CP Media Player.This issue affects CP Media Player: from n/a through 1.1.3. Mitigation only Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32085 Cross-Site Request Forgery (CSRF) vulnerability in AitThemes Citadela Listing.This issue affects Citadela Listing: from n/a before 5.20.0. Citadela Listing 5.20.0+ Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32449 Cross-Site Request Forgery (CSRF) vulnerability in MagniGenie RestroPress.This issue affects RestroPress: from n/a through 3.1.2. Mitigation only Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-32452 Cross-Site Request Forgery (CSRF) vulnerability in WP EasyCart.This issue affects WP EasyCart: from n/a through 5.5.19. Mitigation only Fix from $1,6002024-04-15 HIGH 8.8 CVE-2024-32441 Cross-Site Request Forgery (CSRF) vulnerability in Zoho Campaigns.This issue affects Zoho Campaigns: from n/a through 2.0.7. Zoho Campaigns 2.0.8+ Fix from $1,9502024-04-15 HIGH 8.8 CVE-2024-32442 Cross-Site Request Forgery (CSRF) vulnerability in Zoho Campaigns.This issue affects Zoho Campaigns: from n/a through 2.0.7. Zoho Campaigns 2.0.8+ Fix from $1,9502024-04-15 HIGH 8.8 CVE-2024-32443 Cross-Site Request Forgery (CSRF) vulnerability in IP2Location Download IP2Location Country Blocker.This issue affects Download IP2Location Country B… Country Blocker 2.34.3+ Fix from $1,9502024-04-15 HIGH 8.8 CVE-2024-32445 Cross-Site Request Forgery (CSRF) vulnerability in Saleswonder Team: Tobias WebinarIgnition webinar-ignition.This issue affects WebinarIgnition: from… Webinarignition 3.06.0+ Fix from $1,9502024-04-15 MEDIUM 5.4 CVE-2024-32446 Cross-Site Request Forgery (CSRF) vulnerability in WP Swings Wallet System for WooCommerce.This issue affects Wallet System for WooCommerce: from n/a… Mitigation only Fix from $1,6002024-04-15 HIGH 8.8 CVE-2024-32438 Cross-Site Request Forgery (CSRF) vulnerability in cleverplugins.Com SEO Booster.This issue affects SEO Booster: from n/a through 3.8.9. Seo Booster 3.8.10+ Fix from $1,9502024-04-15 HIGH 8.8 CVE-2024-32439 Cross-Site Request Forgery (CSRF) vulnerability in SwitchWP WP Client Reports.This issue affects WP Client Reports: from n/a through 1.0.22. Wp Client Reports 1.0.23+ Fix from $1,9502024-04-15 HIGH 8.8 CVE-2024-32440 Cross-Site Request Forgery (CSRF) vulnerability in Thomas Belser Asgaros Forum.This issue affects Asgaros Forum: from n/a through 2.8.0. Asgaros Forum 2.9.0+ Fix from $1,9502024-04-15 HIGH 7.1 CVE-2024-31093 Cross-Site Request Forgery (CSRF) vulnerability in Kaloyan K. Tsvetkov Broken Images allows Cross-Site Scripting (XSS).This issue affects Broken Imag… Mitigation only Fix from $1,9502024-04-15 MEDIUM 6.1 CVE-2024-32082 Cross-Site Request Forgery (CSRF) vulnerability in Kamlesh Parmar Sync Post With Other Site sync-post-with-other-site allows Cross Site Request Forge… Sync Post With Other Site after 1.8 Fix from $1,6002024-04-15 HIGH 7.1 CVE-2024-30545 Cross-Site Request Forgery (CSRF) vulnerability in Nick Powers Social Author Bio allows Stored XSS.This issue affects Social Author Bio: from n/a thr… Mitigation only Fix from $1,9502024-04-15 HIGH 7.1 CVE-2024-31086 Cross-Site Request Forgery (CSRF) vulnerability in Venugopal Change default login logo,url and title allows Cross-Site Scripting (XSS).This issue aff… Mitigation only Fix from $1,9502024-04-15 HIGH 8.7 CVE-2024-2739 The Advanced Search WordPress plugin through 1.1.6 does not have CSRF checks in some places, which could allow attackers to make logged in users perf… Advanced Search after 1.1.6 Fix from $1,9502024-04-15 MEDIUM 6.1 CVE-2024-2857 The Simple Buttons Creator WordPress plugin through 1.04 does not have any authorisation as well as CSRF in its add button function, allowing unauthe… Simple Buttons Creator after 1.04 Fix from $1,6002024-04-15 MEDIUM 5.4 CVE-2024-1306 The Smart Forms WordPress plugin before 2.6.94 does not have CSRF checks in some places, which could allow attackers to make logged-in users perform… Smart Forms 2.6.94+ Fix from $1,6002024-04-15 HIGH 8.8 CVE-2024-31362 Cross-Site Request Forgery (CSRF) vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid : from n/a through 5.7.8. Profilegrid 5.7.9+ Fix from $1,9502024-04-12 HIGH 8.8 CVE-2024-31363 Cross-Site Request Forgery (CSRF) vulnerability in LifterLMS.This issue affects LifterLMS: from n/a through 7.5.0. Lifterlms 7.5.1+ Fix from $1,9502024-04-12 MEDIUM 5.4 CVE-2024-31279 Cross-Site Request Forgery (CSRF) vulnerability in Catch Plugins Generate Child Theme.This issue affects Generate Child Theme: from n/a through 2.0. Mitigation only Fix from $1,6002024-04-12