Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2023-49448 JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via admin/nav/delete. Jfinalcms No fix yet Fix from $1,9502023-12-05 HIGH 8.8 CVE-2023-49372 JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/slide/save. Jfinalcms No fix yet Fix from $1,9502023-12-05 HIGH 8.8 CVE-2023-49373 JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via /admin/slide/delete. Jfinalcms No fix yet Fix from $1,9502023-12-05 HIGH 8.8 CVE-2023-49374 JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/slide/update. Jfinalcms No fix yet Fix from $1,9502023-12-05 HIGH 8.8 CVE-2023-49375 JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/friend_link/update. Jfinalcms No fix yet Fix from $1,9502023-12-05 HIGH 8.8 CVE-2023-49376 JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/tag/delete. Jfinalcms No fix yet Fix from $1,9502023-12-05 HIGH 8.8 CVE-2023-24048 Cross Site Request Forgery (CSRF) vulnerability in Connectize AC21000 G6 641.139.1.1256 allows attackers to gain control of the device via crafted GE… Ac21000 G6 Firmware Mitigation only Fix from $1,9502023-12-04 MEDIUM 6.5 CVE-2023-5884 The Word Balloon WordPress plugin before 4.20.3 does not protect some of its actions against CSRF attacks, allowing an unauthenticated attacker to tr… Word Balloon 4.20.3+ Fix from $1,6002023-12-04 MEDIUM 6.5 CVE-2023-5979 The eCommerce Product Catalog Plugin for WordPress plugin before 3.3.26 does not have CSRF checks in some of its admin pages, which could allow attac… Ecommerce Product Catalog 3.3.26+ Fix from $1,6002023-12-04 MEDIUM 6.5 CVE-2023-5990 The Interactive Contact Form and Multi Step Form Builder with Drag & Drop Editor WordPress plugin before 3.4.2 does not have CSRF checks on some of i… Funnelforms Free 3.4.2+ Fix from $1,6002023-12-04 MEDIUM 6.5 CVE-2023-6474 A vulnerability has been found in PHPGurukul Nipah Virus Testing Management System 1.0 and classified as problematic. This vulnerability affects unkn… Nipah Virus Testing Management System No fix yet Fix from $1,6002023-12-03 HIGH 8.8 CVE-2023-38268 IBM InfoSphere Information Server 11.7 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorize… Infosphere Information Server 11.7.1.0 / 11.7.1.4+ Fix from $1,9502023-12-01 HIGH 8.8 CVE-2023-47870 Cross-Site Request Forgery (CSRF), Missing Authorization vulnerability in gVectors Team wpForo Forum wpforo allows Cross Site Request Forgery, Access… Wpforo Forum after 2.2.6 Fix from $1,9502023-11-30 MEDIUM 6.1 CVE-2023-48278 Cross-Site Request Forgery (CSRF) vulnerability in Nitin Rathod WP Forms Puzzle Captcha allows Stored XSS.This issue affects WP Forms Puzzle Captcha:… Wp Forms Puzzle Captcha after 4.1 Fix from $1,6002023-11-30 HIGH 8.8 CVE-2023-47875 Cross-Site Request Forgery (CSRF) vulnerability in Perfmatters allows Cross Site Request Forgery.This issue affects Perfmatters: from n/a through 2.1… Perfmatters after 2.1.6 Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48328 Cross-Site Request Forgery (CSRF) vulnerability in Imagely WordPress Gallery Plugin – NextGEN Gallery allows Cross Site Request Forgery.This issue af… Nextgen Gallery 3.39+ Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48754 Cross-Site Request Forgery (CSRF) vulnerability in Wap Nepal Delete Post Revisions In WordPress allows Cross Site Request Forgery.This issue affects … Delete Post Revisions after 4.6 Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-5803 Cross-Site Request Forgery (CSRF) vulnerability in Business Directory Team Business Directory Plugin – Easy Listing Directories for WordPress allows … Business Directory after 6.3.10 Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48912 Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/archives/edit. Dreamer Cms No fix yet Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48913 Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/archives/delete. Dreamer Cms No fix yet Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48914 Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/archives/add. Dreamer Cms No fix yet Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-47645 Cross-Site Request Forgery (CSRF) vulnerability in RegistrationMagic RegistrationMagic – Custom Registration Forms, User Registration, Payment, and U… Registrationmagic 5.2.3.0+ Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48279 Cross-Site Request Forgery (CSRF) vulnerability in Seraphinite Solutions Seraphinite Post .DOCX Source allows Cross Site Request Forgery.This issue a… Seraphinite Post .docx Source after 2.16.6 Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48281 Cross-Site Request Forgery (CSRF) vulnerability in Super Blog Me Broken Link Checker for YouTube allows Cross Site Request Forgery.This issue affects… Broken Link Checker For Youtube after 1.3 Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-34030 Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Premium allows Cross-Site Request… Complianz 6.4.8+ Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-36682 Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force US LLC Schema Pro allows Cross Site Request Forgery.This issue affects Schema Pro… Schema 2.7.8+ Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-36685 Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force US LLC CartFlows Pro allows Cross Site Request Forgery.This issue affects CartFlo… Cartflows after 1.11.12 Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-33333 Cross-Site Request Forgery (CSRF) vulnerability in Really Simple Plugins Complianz, Really Simple Plugins Complianz Premium allows Cross-Site Scripti… Complianz 6.4.6 / 6.4.7+ Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-6137 Cross-Site Request Forgery (CSRF) vulnerability in finnj Frontier Post allows Cross Site Request Forgery.This issue affects Frontier Post: from n/a t… Frontier Post after 6.1 Fix from $1,9502023-11-30 HIGH 8.8 CVE-2023-48323 Cross-Site Request Forgery (CSRF) vulnerability in Awesome Support Team Awesome Support – WordPress HelpDesk & Support Plugin allows Cross Site Reque… Awesome Support after 6.1.4 Fix from $1,9502023-11-30