Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2019-09-08 CVE-2019-16099 Cross-Site Request Forgery (CSRF) vulnerability in Silver-Peak Unity Edgeconnect Sd-Wan Firmware 8.1.4.965644
Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows CSRF via JSON data to a .swf file.
network
low complexity
silver-peak CWE-352
8.8
2019-09-06 CVE-2019-15128 Cross-Site Request Forgery (CSRF) vulnerability in If.Svnadmin Project If.Svnadmin 1.6.0/1.6.1/1.6.2
iF.SVNAdmin through 1.6.2 allows svnadmin/usercreate.php CSRF to create a user.
network
low complexity
if-svnadmin-project CWE-352
6.5
2019-09-06 CVE-2019-16059 Cross-Site Request Forgery (CSRF) vulnerability in Sapplica Sentrifugo 3.2
Sentrifugo 3.2 lacks CSRF protection.
network
low complexity
sapplica CWE-352
8.8
2019-09-03 CVE-2019-15868 Cross-Site Request Forgery (CSRF) vulnerability in Wpaffiliatemanager Affiliates Manager
The affiliates-manager plugin before 2.6.6 for WordPress has CSRF.
network
low complexity
wpaffiliatemanager CWE-352
8.8
2019-09-03 CVE-2019-15865 Cross-Site Request Forgery (CSRF) vulnerability in Holest Breadcrumbs BY Menu
The breadcrumbs-by-menu plugin before 1.0.3 for WordPress has CSRF.
network
low complexity
holest CWE-352
8.8
2019-08-30 CVE-2019-15841 Cross-Site Request Forgery (CSRF) vulnerability in Facebook for Woocommerce
The facebook-for-woocommerce plugin before 1.9.15 for WordPress has CSRF via ajax_woo_infobanner_post_click, ajax_woo_infobanner_post_xout, or ajax_fb_toggle_visibility.
network
low complexity
facebook CWE-352
8.8
2019-08-30 CVE-2019-15840 Cross-Site Request Forgery (CSRF) vulnerability in Facebook for Woocommerce 1.9.11/1.9.12/1.9.13
The facebook-for-woocommerce plugin before 1.9.14 for WordPress has CSRF.
network
low complexity
facebook CWE-352
8.8
2019-08-30 CVE-2019-15835 Cross-Site Request Forgery (CSRF) vulnerability in WP Better Permalinks Project WP Better Permalinks
The wp-better-permalinks plugin before 3.0.5 for WordPress has CSRF.
network
low complexity
wp-better-permalinks-project CWE-352
8.8
2019-08-30 CVE-2019-15834 Cross-Site Request Forgery (CSRF) vulnerability in Webp Converter for Media Project Webp Converter for Media 1.0.0/1.0.1/1.0.2
The webp-converter-for-media plugin before 1.0.3 for WordPress has CSRF.
network
low complexity
webp-converter-for-media-project CWE-352
8.8
2019-08-30 CVE-2019-15832 Cross-Site Request Forgery (CSRF) vulnerability in Wp-Buy Visitor Traffic Real Time Statistics
The visitors-traffic-real-time-statistics plugin before 1.13 for WordPress has CSRF.
network
low complexity
wp-buy CWE-352
8.8