Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2019-08-14 CVE-2016-10883 Cross-Site Request Forgery (CSRF) vulnerability in Mijnpress Simple ADD Pages OR Posts
The simple-add-pages-or-posts plugin before 1.7 for WordPress has CSRF for deleting users.
network
mijnpress CWE-352
5.8
2019-08-14 CVE-2016-10882 Cross-Site Request Forgery (CSRF) vulnerability in Google DOC Embedder Project Google DOC Embedder
The google-document-embedder plugin before 2.6.2 for WordPress has CSRF.
6.8
2019-08-14 CVE-2015-9309 Cross-Site Request Forgery (CSRF) vulnerability in Flippercode WP Google MAP
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit category feature.
network
low complexity
flippercode CWE-352
8.8
2019-08-14 CVE-2015-9308 Cross-Site Request Forgery (CSRF) vulnerability in Flippercode WP Google MAP
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit map feature.
network
low complexity
flippercode CWE-352
8.8
2019-08-14 CVE-2015-9307 Cross-Site Request Forgery (CSRF) vulnerability in Flippercode WP Google MAP
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit location feature.
network
low complexity
flippercode CWE-352
8.8
2019-08-14 CVE-2013-7476 Cross-Site Request Forgery (CSRF) vulnerability in Simple Fields Project Simple Fields
The simple-fields plugin before 1.2 for WordPress has CSRF in the admin interface.
6.8
2019-08-13 CVE-2019-11207 Cross-Site Request Forgery (CSRF) vulnerability in Tibco products
The web server component of TIBCO Software Inc.'s TIBCO LogLogic Enterprise Virtual Appliance, and TIBCO LogLogic Log Management Intelligence contains multiple vulnerabilities that theoretically allow persistent and reflected cross-site scripting (XSS) attacks, as well as cross-site request forgery (CSRF) attacks.
network
tibco CWE-352
6.8
2019-08-13 CVE-2018-20964 Cross-Site Request Forgery (CSRF) vulnerability in Codepeople Contact Form Email
The contact-form-to-email plugin before 1.2.66 for WordPress has CSRF.
6.8
2019-08-12 CVE-2017-18504 Cross-Site Request Forgery (CSRF) vulnerability in Wpdeveloper Twitter Cards Meta
The twitter-cards-meta plugin before 2.5.0 for WordPress has CSRF.
6.8
2019-08-12 CVE-2016-10876 Cross-Site Request Forgery (CSRF) vulnerability in Wpseeds WP Database Backup
The wp-database-backup plugin before 4.3.1 for WordPress has CSRF.
network
wpseeds CWE-352
6.8