Vulnerability index

Browse CVEs

7,375 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Cross-Site Request Forgery (CSRF)CWE-352 × clear
HIGH 8.8 CVE-2023-26542 Cross-Site Request Forgery (CSRF) vulnerability in Exeebit phpinfo() WP plugin <= 4.0 versions. Phpinfo Wp 5.0+ Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-28747 Cross-Site Request Forgery (CSRF) vulnerability in codeboxr CBX Currency Converter plugin <= 3.0.3 versions. Cbx Currency Converter after 3.0.3 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27453 Cross-Site Request Forgery (CSRF) vulnerability in LWS LWS Tools plugin <= 2.3.1 versions. Lws Tools after 2.3.1 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27457 Cross-Site Request Forgery (CSRF) vulnerability in Passionate Brains Add Expires Headers & Optimized Minify plugin <= 2.7 versions. Add Expires Headers \& Optimized Minify after 2.7 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27458 Cross-Site Request Forgery (CSRF) vulnerability in wpstream WpStream plugin <= 4.4.10 versions. Wpstream after 4.4.10 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27461 Cross-Site Request Forgery (CSRF) vulnerability in Yoohoo Plugins When Last Login plugin <= 1.2.1 versions. When Last Login after 1.2.1 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27633 Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Customify – Intuitive Website Styling plugin <= 2.10.4 versions. Customify after 2.10.4 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-26532 Cross-Site Request Forgery (CSRF) vulnerability in AccessPress Themes Social Auto Poster plugin <= 2.1.4 versions. Social Auto Poster after 2.1.4 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-26535 Cross-Site Request Forgery (CSRF) vulnerability in WPPOOL Sheets To WP Table Live Sync plugin <= 2.12.15 versions. Sheets To Wp Table Live Sync after 2.12.15 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27442 Cross-Site Request Forgery (CSRF) vulnerability in Teplitsa of social technologies Leyka plugin <= 3.29.2 versions. Leyka after 3.29.2 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27444 Cross-Site Request Forgery (CSRF) vulnerability in Pierre Lannoy / PerfOps One DecaLog plugin <= 3.7.0 versions. Decalog after 3.7.0 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-27446 Cross-Site Request Forgery (CSRF) vulnerability in Fluenx DeepL API translation plugin <= 2.1.4 versions. Deepl Pro Api Translation after 2.1.4 Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-28749 Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM On Demand Search And Replace plugin <= 1.3.0 versions. Cm Search And Replace after 1.3.0 Fix from $1,9502023-11-22 MEDIUM 6.1 CVE-2023-2447 The UserPro plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.1.1. This is due to missing or incor… Userpro 5.1.2+ Fix from $1,6002023-11-22 HIGH 8.8 CVE-2022-35638 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.8 and 6.1.0.0 through 6.1.2.1 is vulnerable to cross-site request forgery which co… Sterling B2b Integrator 6.0.3.9 / 6.1.2.3+ Fix from $1,9502023-11-22 HIGH 8.8 CVE-2023-5776 The Post Meta Data Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.1. This is due … Post Meta Data Manager 1.2.2+ Fix from $1,9502023-11-21 HIGH 8.8 CVE-2023-4824 The WooHoo Newspaper Magazine theme does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in adm… Woohoo Newspaper Magazine Theme after 1.4.3 Fix from $1,9502023-11-20 HIGH 8.8 CVE-2023-38885 OpenSIS Classic Community Edition version 9.0 lacks cross-site request forgery (CSRF) protection throughout the whole app. This may allow an attacker… Opensis Mitigation only Fix from $1,9502023-11-20 HIGH 8.8 CVE-2023-48293 The XWiki Admin Tools Application provides tools to help the administration of XWiki. Prior to version 4.5.1, a cross-site request forgery vulnerabil… Xwiki 4.5.1+ Fix from $1,9502023-11-20 HIGH 8.8 CVE-2023-48292EPSS 23% The XWiki Admin Tools Application provides tools to help the administration of XWiki. Starting in version 4.4 and prior to version 4.5.1, a cross sit… Admin Tools 4.5.1+ Fix from $1,9502023-11-20 MEDIUM 5.4 CVE-2023-6197 The Audio Merchant plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.0.4. This is due to missi… Audio Merchant after 5.0.4 Fix from $1,6002023-11-20 HIGH 8.8 CVE-2023-6196 The Audio Merchant plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.0.4. This is due to missi… Audio Merchant after 5.0.4 Fix from $1,9502023-11-20 HIGH 8.8 CVE-2023-41129 Cross-Site Request Forgery (CSRF) vulnerability in Patreon Patreon WordPress.This issue affects Patreon WordPress: from n/a through 1.8.6. Patreon Wordpress after 1.8.6 Fix from $1,9502023-11-18 HIGH 8.8 CVE-2023-28780 Cross-Site Request Forgery (CSRF) vulnerability in Yoast Yoast Local Premium.This issue affects Yoast Local Premium: from n/a through 14.8. Yoast Local Seo after 14.8 Fix from $1,9502023-11-18 HIGH 8.8 CVE-2023-31075 Cross-Site Request Forgery (CSRF) vulnerability in Arshid Easy Hide Login.This issue affects Easy Hide Login: from n/a through 1.0.8. Easy Hide Login after 1.0.8 Fix from $1,9502023-11-18 HIGH 8.8 CVE-2023-31089 Cross-Site Request Forgery (CSRF) vulnerability in Tradebooster Video XML Sitemap Generator.This issue affects Video XML Sitemap Generator: from n/a … Video Xml Sitemap Generator after 1.0.0 Fix from $1,9502023-11-18 HIGH 8.8 CVE-2023-32245 Cross-Site Request Forgery (CSRF) vulnerability in WPDeveloper Essential Addons for Elementor Pro.This issue affects Essential Addons for Elementor P… Essential Addons For Elementor after 5.4.8 Fix from $1,9502023-11-18 HIGH 8.8 CVE-2023-32504 Cross-Site Request Forgery (CSRF) vulnerability in Kainex Wise Chat.This issue affects Wise Chat: from n/a through 3.1.3. Wise Chat after 3.1.3 Fix from $1,9502023-11-18 HIGH 8.8 CVE-2023-32514 Cross-Site Request Forgery (CSRF) vulnerability in Himanshu Parashar Google Site Verification plugin using Meta Tag.This issue affects Google Site Ve… Google Site Verification Plugin Using Meta Tag after 1.2 Fix from $1,9502023-11-18 HIGH 8.8 CVE-2023-25985 Cross-Site Request Forgery (CSRF) vulnerability in Tomas | Docs | FAQ | Premium Support WordPress Tooltips.This issue affects WordPress Tooltips: fro… Wordpress Tooltips after 8.2.5 Fix from $1,9502023-11-18