Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2023-49448
JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via admin/nav/delete.
Jfinalcms
No fix yet
HIGH 8.8
CVE-2023-49372
JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/slide/save.
Jfinalcms
No fix yet
HIGH 8.8
CVE-2023-49373
JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/slide/delete.
Jfinalcms
No fix yet
HIGH 8.8
CVE-2023-49374
JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/slide/update.
Jfinalcms
No fix yet
HIGH 8.8
CVE-2023-49375
JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/friend_link/update.
Jfinalcms
No fix yet
HIGH 8.8
CVE-2023-49376
JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/tag/delete.
Jfinalcms
No fix yet
HIGH 8.8
CVE-2023-24048
Cross Site Request Forgery (CSRF) vulnerability in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain control of the device via crafted GE…
Ac21000 G6 Firmware
Mitigation only
MEDIUM 6.5
CVE-2023-5884
The Word Balloon WordPress plugin before 4.20.3 does not protect some of its actions against CSRF attacks, allowing an unauthenticated attacker to tr…
Word Balloon
4.20.3+
MEDIUM 6.5
CVE-2023-5979
The eCommerce Product Catalog Plugin for WordPress plugin before 3.3.26 does not have CSRF checks in some of its admin pages, which could allow attac…
Ecommerce Product Catalog
3.3.26+
MEDIUM 6.5
CVE-2023-5990
The Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor WordPress plugin before 3.4.2 does not have CSRF checks on some of i…
Funnelforms Free
3.4.2+
MEDIUM 6.5
CVE-2023-6474
A vulnerability has been found in PHPGurukul Nipah Virus Testing Management System 1.0 and classified as problematic. This vulnerability affects unkn…
Nipah Virus Testing Management System
No fix yet
HIGH 8.8
CVE-2023-38268
IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorize…
Infosphere Information Server
11.7.1.0 / 11.7.1.4+
HIGH 8.8
CVE-2023-47870
Cross-Site Request Forgery (CSRF), Missing Authorization vulnerability in gVectors Team wpForo Forum wpforo allows Cross Site Request Forgery, Access…
Wpforo Forum
after 2.2.6
MEDIUM 6.1
CVE-2023-48278
Cross-Site Request Forgery (CSRF) vulnerability in Nitin Rathod WP Forms Puzzle Captcha allows Stored XSS.This issue affects WP Forms Puzzle Captcha:…
Wp Forms Puzzle Captcha
after 4.1
HIGH 8.8
CVE-2023-47875
Cross-Site Request Forgery (CSRF) vulnerability in Perfmatters allows Cross Site Request Forgery.This issue affects Perfmatters: from n/a through 2.1…
Perfmatters
after 2.1.6
HIGH 8.8
CVE-2023-48328
Cross-Site Request Forgery (CSRF) vulnerability in Imagely WordPress Gallery Plugin – NextGEN Gallery allows Cross Site Request Forgery.This issue af…
Nextgen Gallery
3.39+
HIGH 8.8
CVE-2023-48754
Cross-Site Request Forgery (CSRF) vulnerability in Wap Nepal Delete Post Revisions In WordPress allows Cross Site Request Forgery.This issue affects …
Delete Post Revisions
after 4.6
HIGH 8.8
CVE-2023-5803
Cross-Site Request Forgery (CSRF) vulnerability in Business Directory Team Business Directory Plugin – Easy Listing Directories for WordPress allows …
Business Directory
after 6.3.10
HIGH 8.8
CVE-2023-48912
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/archives/edit.
Dreamer Cms
No fix yet
HIGH 8.8
CVE-2023-48913
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/archives/delete.
Dreamer Cms
No fix yet
HIGH 8.8
CVE-2023-48914
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/archives/add.
Dreamer Cms
No fix yet
HIGH 8.8
CVE-2023-47645
Cross-Site Request Forgery (CSRF) vulnerability in RegistrationMagic RegistrationMagic – Custom Registration Forms, User Registration, Payment, and U…
Registrationmagic
5.2.3.0+
HIGH 8.8
CVE-2023-48279
Cross-Site Request Forgery (CSRF) vulnerability in Seraphinite Solutions Seraphinite Post .DOCX Source allows Cross Site Request Forgery.This issue a…
Seraphinite Post .docx Source
after 2.16.6
HIGH 8.8
CVE-2023-48281
Cross-Site Request Forgery (CSRF) vulnerability in Super Blog Me Broken Link Checker for YouTube allows Cross Site Request Forgery.This issue affects…
Broken Link Checker For Youtube
after 1.3
HIGH 8.8
CVE-2023-34030
Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Premium allows Cross-Site Request…
Complianz
6.4.8+
HIGH 8.8
CVE-2023-36682
Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force US LLC Schema Pro allows Cross Site Request Forgery.This issue affects Schema Pro…
Schema
2.7.8+
HIGH 8.8
CVE-2023-36685
Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force US LLC CartFlows Pro allows Cross Site Request Forgery.This issue affects CartFlo…
Cartflows
after 1.11.12
HIGH 8.8
CVE-2023-33333
Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Premium allows Cross-Site Scripti…
Complianz
6.4.6 / 6.4.7+
HIGH 8.8
CVE-2023-6137
Cross-Site Request Forgery (CSRF) vulnerability in finnj Frontier Post allows Cross Site Request Forgery.This issue affects Frontier Post: from n/a t…
Frontier Post
after 6.1
HIGH 8.8
CVE-2023-48323
Cross-Site Request Forgery (CSRF) vulnerability in Awesome Support Team Awesome Support – WordPress HelpDesk & Support Plugin allows Cross Site Reque…
Awesome Support
after 6.1.4