Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-12-02 CVE-2024-52479 Cross-Site Request Forgery (CSRF) vulnerability in Astoundify Jobify
Cross-Site Request Forgery (CSRF) vulnerability in Ben Marshall Jobify - Job Board WordPress Theme allows Cross Site Request Forgery.This issue affects Jobify - Job Board WordPress Theme: from n/a through 4.2.3.
network
low complexity
astoundify CWE-352
8.8
2024-12-02 CVE-2024-53751 Cross-Site Request Forgery (CSRF) vulnerability in Buildapp Build APP Online
Cross-Site Request Forgery (CSRF) vulnerability in Abdul Hakeem Build App Online allows Cross Site Request Forgery.This issue affects Build App Online: from n/a through 1.0.22.
network
low complexity
buildapp CWE-352
8.8
2024-11-27 CVE-2024-10521 The WordPress Contact Forms by Cimatti plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.9.2.
network
low complexity
CWE-352
4.3
2024-11-26 CVE-2024-11743 Cross-Site Request Forgery (CSRF) vulnerability in Mayurik Best House Rental Management System 1.0
A vulnerability, which was classified as problematic, was found in SourceCodester Best House Rental Management System 1.0.
network
low complexity
mayurik CWE-352
4.3
2024-11-26 CVE-2024-11342 The Skt NURCaptcha plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.5.0.
network
low complexity
CWE-352
6.1
2024-11-25 CVE-2024-11673 Cross-Site Request Forgery (CSRF) vulnerability in 1000Projects Bookstore Management System 1.0
A vulnerability, which was classified as problematic, has been found in 1000 Projects Bookstore Management System 1.0.
network
low complexity
1000projects CWE-352
4.3
2024-11-22 CVE-2024-9665 Cross-Site Request Forgery (CSRF) vulnerability in Zimbra
Zimbra GraphQL Cross-Site Request Forgery Information Disclosure Vulnerability.
network
low complexity
zimbra CWE-352
6.5
2024-11-21 CVE-2024-10726 The Friendly Functions for Welcart plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.2.4.
network
low complexity
CWE-352
6.1
2024-11-21 CVE-2024-11416 The WIP Incoming Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.1.
network
low complexity
CWE-352
6.1
2024-11-19 CVE-2024-51669 Cross-Site Request Forgery (CSRF) vulnerability in Vivwebsolutions Dynamic Widgets
Cross-Site Request Forgery (CSRF) vulnerability in Vivwebs Dynamic Widgets.This issue affects Dynamic Widgets: from n/a through 1.6.4.
network
low complexity
vivwebsolutions CWE-352
8.8