Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2023-52072 FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/userconfig_updagte. Flycms No fix yet Fix from $1,9502024-01-08 HIGH 8.8 CVE-2023-52073 FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /system/site/config_footer_updagte. Flycms No fix yet Fix from $1,9502024-01-08 HIGH 8.8 CVE-2023-52074 FlyCms v1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component system/site/webconfig_updagte. Flycms No fix yet Fix from $1,9502024-01-08 HIGH 8.8 CVE-2023-52216 Cross-Site Request Forgery (CSRF) vulnerability in Yevhen Kotelnytskyi JS & CSS Script Optimizer.This issue affects JS & CSS Script Optimizer: from n… Js \& Css Script Optimizer after 0.3.3 Fix from $1,9502024-01-08 CRITICAL 9.8 CVE-2023-52200 Cross-Site Request Forgery (CSRF), Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember – Membership Plugin, Content Restri… Armember after 4.0.22 Fix from $2,3002024-01-08 MEDIUM 6.1 CVE-2023-6529 The WP VR WordPress plugin before 8.3.15 does not authorisation and CSRF in a function hooked to admin_init, allowing unauthenticated users to downgr… Wp Vr 8.3.15+ Fix from $1,6002024-01-08 HIGH 8.8 CVE-2023-6532 The WP Blogs' Planetarium WordPress plugin through 1.0 does not have CSRF check in place when updating its settings, which could allow attackers to m… Wp Blogs Planetarium after 1.0 Fix from $1,9502024-01-08 HIGH 8.8 CVE-2023-6845 The CommentTweets WordPress plugin through 0.6 does not have CSRF checks in some places, which could allow attackers to make logged in users perform … Commenttweets after 0.6 Fix from $1,9502024-01-08 HIGH 8.8 CVE-2023-52222 Cross-Site Request Forgery (CSRF) vulnerability in Automattic WooCommerce.This issue affects WooCommerce: from n/a through 8.2.2. Woocommerce after 8.2.2 Fix from $1,9502024-01-08 HIGH 8.8 CVE-2023-52120 Cross-Site Request Forgery (CSRF) vulnerability in Basix NEX-Forms – Ultimate Form Builder – Contact forms and much more.This issue affects NEX-Forms… Nex Forms after 8.5.2 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52121 Cross-Site Request Forgery (CSRF) vulnerability in NitroPack Inc. NitroPack – Cache & Speed Optimization for Core Web Vitals, Defer CSS & JavaScript,… Nitropack after 1.10.2 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52122 Cross-Site Request Forgery (CSRF) vulnerability in PressTigers Simple Job Board.This issue affects Simple Job Board: from n/a through 2.10.6. Simple Job Board after 2.10.6 Fix from $1,9502024-01-05 CRITICAL 9.8 CVE-2023-51673 Cross-Site Request Forgery (CSRF) vulnerability in Designful Stylish Price List – Price Table Builder & QR Code Restaurant Menu.This issue affects St… Stylish Price List after 7.0.17 Fix from $2,3002024-01-05 MEDIUM 6.5 CVE-2023-51678 Cross-Site Request Forgery (CSRF) vulnerability in Doofinder Doofinder WP & WooCommerce Search.This issue affects Doofinder WP & WooCommerce Search: … Doofinder after 2.0.33 Fix from $1,6002024-01-05 HIGH 8.8 CVE-2023-52119 Cross-Site Request Forgery (CSRF) vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Buil… Icegram Engage after 3.1.18 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-51538 Cross-Site Request Forgery (CSRF) vulnerability in Awesome Support Team Awesome Support – WordPress HelpDesk & Support Plugin.This issue affects Awes… Awesome Support after 6.1.5 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-51539 Cross-Site Request Forgery (CSRF) vulnerability in Apollo13Themes Apollo13 Framework Extensions.This issue affects Apollo13 Framework Extensions: fro… Apollo13 Framework Extensions after 1.9.1 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-51668 Cross-Site Request Forgery (CSRF) vulnerability in WP Zone Inline Image Upload for BBPress.This issue affects Inline Image Upload for BBPress: from n… Inline Image Upload For Bbpress after 1.1.18 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-51535 Cross-Site Request Forgery (CSRF) vulnerability in СleanTalk - Anti-Spam Protection Spam protection, Anti-Spam, FireWall by CleanTalk.This issue affe… Spam Protection\, Antispam\, Firewall after 6.20 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52145 Cross-Site Request Forgery (CSRF) vulnerability in Marios Alexandrou Republish Old Posts.This issue affects Republish Old Posts: from n/a through 1.2… Republish Old Posts after 1.21 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52149 Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Floating Button.This issue affects Floating Button: from n/a through 6.0. Floating Button after 6.0 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52127 Cross-Site Request Forgery (CSRF) vulnerability in WPClever WPC Product Bundles for WooCommerce.This issue affects WPC Product Bundles for WooCommerc… Wpc Product Bundles For Woocommerce after 7.3.1 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52128 Cross-Site Request Forgery (CSRF) vulnerability in WhiteWP White Label – WordPress Custom Admin, Custom Login Page, and Custom Dashboard.This issue a… White Label after 2.9.0 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52129 Cross-Site Request Forgery (CSRF) vulnerability in Michael Winkler teachPress.This issue affects teachPress: from n/a through 9.0.4. Teachpress after 9.0.4 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52130 Cross-Site Request Forgery (CSRF) vulnerability in wp.Insider, wpaffiliatemgr Affiliates Manager.This issue affects Affiliates Manager: from n/a thro… Affiliates Manager after 2.9.31 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52136 Cross-Site Request Forgery (CSRF) vulnerability in Smash Balloon Custom Twitter Feeds – A Tweets Widget or X Feed Widget.This issue affects Custom Tw… Custom Twitter Feeds after 2.1.2 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52123 Cross-Site Request Forgery (CSRF) vulnerability in WPChill Strong Testimonials.This issue affects Strong Testimonials: from n/a through 3.1.10. Strong Testimonials after 3.1.10 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52150 Cross-Site Request Forgery (CSRF) vulnerability in Ovation S.R.L. Dynamic Content for Elementor.This issue affects Dynamic Content for Elementor: fro… Dynamic Content For Elementor 2.12.5+ Fix from $1,9502024-01-05 HIGH 8.8 CVE-2023-52184 Cross-Site Request Forgery (CSRF) vulnerability in WP Job Portal WP Job Portal – A Complete Job Board.This issue affects WP Job Portal – A Complete J… Wp Job Portal after 2.0.6 Fix from $1,9502024-01-05 HIGH 8.8 CVE-2018-25096 A vulnerability was found in MdAlAmin-aol Own Health Record 0.1-alpha/0.2-alpha/0.3-alpha/0.3.1-alpha. It has been rated as problematic. This issue a… Ownhealthrecord 0.4+ Fix from $1,9502023-12-30