Vulnerabilities (CVE)

Filtered by CWE-352
Total 5841 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-40559 1 Multidots 1 Dynamic Pricing And Discount Rules For Woocommerce 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Dynamic Pricing and Discount Rules for WooCommerce plugin <= 2.4.0 versions.
CVE-2023-25025 1 Chetangole 1 Wp-copyprotect \[protect Your Blog Posts\] 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Chetan Gole WP-CopyProtect [Protect your blog posts] plugin <= 3.1.0 versions.
CVE-2023-40561 1 Multidots 1 Enhanced Ecommerce Google Analytics For Woocommerce 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in theDotstore Enhanced Ecommerce Google Analytics for WooCommerce plugin <= 3.7.1 versions.
CVE-2023-25788 1 Saphali 1 Woocommerce 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Saphali Saphali Woocommerce Lite plugin <= 1.8.13 versions.
CVE-2023-25980 1 Cagewebdev 1 Optimize Database After Deleting Revisions 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in CAGE Web Design | Rolf van Gelder Optimize Database after Deleting Revisions plugin <= 5.1 versions.
CVE-2023-37995 1 Wp-copyprotect Project 1 Wp-copyprotect 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Chetan Gole WP-CopyProtect [Protect your blog posts] plugin <= 3.1.0 versions.
CVE-2023-39989 1 Draftpress 1 Header Footer Code Manager 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in 99robots Header Footer Code Manager plugin <= 1.1.34 versions.
CVE-2023-40210 1 Sean-barton 1 Sb Child List 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Sean Barton (Tortoise IT) SB Child List plugin <= 4.5 versions.
CVE-2023-39923 1 Radiustheme 1 The Post Grid 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 7.2.7 versions.
CVE-2023-27435 1 Yasglobal 1 Http Auth 2023-10-05 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Sami Ahmed Siddiqui HTTP Auth plugin <= 0.3.2 versions.
CVE-2023-32792 1 Nxlog 1 Nxlog Manager 2023-10-05 N/A 6.5 MEDIUM
Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to eliminate roles within the platform by sending a specifically crafted query to the server. The vulnerability is based on the absence of proper validation of the origin of incoming requests.
CVE-2023-32791 1 Nxlog 1 Nxlog Manager 2023-10-05 N/A 6.5 MEDIUM
Cross-Site Request Forgery (CSRF) vulnerability in NXLog Manager 5.6.5633 version. This vulnerability allows an attacker to manipulate and delete user accounts within the platform by sending a specifically crafted query to the server. The vulnerability is based on the lack of proper validation of the origin of incoming requests.
CVE-2023-39917 1 Ays-pro 1 Photo Gallery 2023-10-04 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Photo Gallery Team Photo Gallery by Ays – Responsive Image Gallery plugin <= 5.2.6 versions.
CVE-2023-2830 1 Trustindex 1 Wp Testimonials 2023-10-04 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Trustindex.Io WP Testimonials plugin <= 1.4.2 versions.
CVE-2023-39165 1 Fetchdesigns 1 Sign-up Sheets 2023-10-04 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Fetch Designs Sign-up Sheets plugin <= 2.2.8 versions.
CVE-2023-24518 1 Pandorafms 1 Pandora Fms 2023-10-04 N/A 7.1 HIGH
A Cross-site Request Forgery (CSRF) vulnerability in Pandora FMS allows an attacker to force authenticated users to send a request to a web application they are currently authenticated against. This issue affects Pandora FMS version 767 and earlier versions on all platforms.
CVE-2023-25463 1 Gopiplus 1 Wp-tell-a-friend-popup-form 2023-10-04 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Gopi Ramasamy WP tell a friend popup form plugin <= 7.1 versions.
CVE-2023-37990 1 Perelink Pro Project 1 Perelink Pro 2023-10-04 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Mike Perelink Pro plugin <= 2.1.4 versions.
CVE-2023-38390 1 Anshullabs 1 Mobile Address Bar Changer 2023-10-04 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Anshul Labs Mobile Address Bar Changer plugin <= 3.0 versions.
CVE-2023-38396 1 Web-argument 1 Google-map-shortcode 2023-10-04 N/A 8.8 HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Alain Gonzalez plugin <= 3.1.2 versions.