Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-07-10 CVE-2024-28828 Cross-Site Request Forgery (CSRF) vulnerability in Checkmk 2.0.0/2.1.0
Cross-Site request forgery in Checkmk < 2.3.0p8, < 2.2.0p29, < 2.1.0p45, and <= 2.0.0p39 (EOL) could lead to 1-click compromize of the site.
network
low complexity
checkmk CWE-352
8.8
2024-07-10 CVE-2024-40334 Cross-Site Request Forgery (CSRF) vulnerability in Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/serverFile_deal.php?mudi=upFileDel&dataID=3
network
low complexity
idccms CWE-352
8.8
2024-07-09 CVE-2024-40034 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userLevel_deal.php?mudi=del
network
low complexity
idccms-project CWE-352
8.8
2024-07-09 CVE-2024-40037 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userScore_deal.php?mudi=del
network
low complexity
idccms-project CWE-352
8.8
2024-07-09 CVE-2024-40039 Cross-Site Request Forgery (CSRF) vulnerability in Idccms Project Idccms 1.35
idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/userGroup_deal.php?mudi=del
network
low complexity
idccms-project CWE-352
8.8
2024-07-07 CVE-2024-40601 Cross-Site Request Forgery (CSRF) vulnerability in Mediawiki
An issue was discovered in the MediaWikiChat extension for MediaWiki through 1.42.1.
network
low complexity
mediawiki CWE-352
6.5
2024-07-07 CVE-2024-40603 Cross-Site Request Forgery (CSRF) vulnerability in Mediawiki
An issue was discovered in the ArticleRatings extension for MediaWiki through 1.42.1.
network
low complexity
mediawiki CWE-352
4.3
2024-07-03 CVE-2024-2040 Cross-Site Request Forgery (CSRF) vulnerability in 2Code Himer
The Himer WordPress theme before 2.1.1 does not have CSRF checks in some places, which could allow attackers to make users join private groups via a CSRF attack
network
low complexity
2code CWE-352
4.3
2024-07-03 CVE-2024-2233 Cross-Site Request Forgery (CSRF) vulnerability in 2Code Himer
The Himer WordPress theme before 2.1.1 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks.
network
low complexity
2code CWE-352
4.3
2024-07-03 CVE-2024-2235 Cross-Site Request Forgery (CSRF) vulnerability in 2Code Himer
The Himer WordPress theme before 2.1.1 does not have CSRF checks in some places, which could allow attackers to make users vote on any polls, including those they don't have access to via a CSRF attack
network
low complexity
2code CWE-352
4.3