Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2019-07-05 CVE-2019-5984 Cross-Site Request Forgery (CSRF) vulnerability in Waspthemes Custom CSS PRO
Cross-site request forgery (CSRF) vulnerability in Custom CSS Pro 1.0.3 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
waspthemes CWE-352
8.8
2019-07-05 CVE-2019-5983 Cross-Site Request Forgery (CSRF) vulnerability in Fla-Shop Html5 Maps
Cross-site request forgery (CSRF) vulnerability in HTML5 Maps 1.6.5.6 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
fla-shop CWE-352
8.8
2019-07-05 CVE-2019-5980 Cross-Site Request Forgery (CSRF) vulnerability in Meomundo Related Youtube Videos
Cross-site request forgery (CSRF) vulnerability in Related YouTube Videos versions prior to 1.9.9 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
meomundo CWE-352
8.8
2019-07-05 CVE-2019-5979 Cross-Site Request Forgery (CSRF) vulnerability in Najeebmedia Personalized Woocommerce Cart Page
Cross-site request forgery (CSRF) vulnerability in Personalized WooCommerce Cart Page 2.4 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
najeebmedia CWE-352
8.8
2019-07-05 CVE-2019-5974 Cross-Site Request Forgery (CSRF) vulnerability in Contest-Gallery Contest Gallery
Cross-site request forgery (CSRF) vulnerability in Contest Gallery versions prior to 10.4.5 allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
contest-gallery CWE-352
8.8
2019-07-05 CVE-2019-5973 Cross-Site Request Forgery (CSRF) vulnerability in Sukimalab Online Lesson Booking
Cross-site request forgery (CSRF) vulnerability in Online Lesson Booking 0.8.6 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
sukimalab CWE-352
8.8
2019-07-05 CVE-2019-5971 Cross-Site Request Forgery (CSRF) vulnerability in Sukimalab Attendance Manager
Cross-site request forgery (CSRF) vulnerability in Attendance Manager 0.5.6 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
sukimalab CWE-352
8.8
2019-07-05 CVE-2019-5968 Cross-Site Request Forgery (CSRF) vulnerability in Weseek Growi
Cross-site request forgery (CSRF) vulnerability in GROWI v3.4.6 and earlier allows remote attackers to hijack the authentication of administrators via updating user's 'Basic Info'.
network
low complexity
weseek CWE-352
8.8
2019-07-05 CVE-2019-5963 Cross-Site Request Forgery (CSRF) vulnerability in Zoho Salesiq
Cross-site request forgery (CSRF) vulnerability in Zoho SalesIQ 1.0.8 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
zoho CWE-352
8.8
2019-07-05 CVE-2019-5960 Cross-Site Request Forgery (CSRF) vulnerability in Custom4Web WP Open Graph
Cross-site request forgery (CSRF) vulnerability in WP Open Graph 1.6.1 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
network
low complexity
custom4web CWE-352
8.8