Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-02-12 CVE-2024-24887 Cross-Site Request Forgery (CSRF) vulnerability in Contest-Gallery Contest Gallery
Cross-Site Request Forgery (CSRF) vulnerability in Contest Gallery Photos and Files Contest Gallery – Contact Form, Upload Form, Social Share and Voting Plugin for WordPress.This issue affects Photos and Files Contest Gallery – Contact Form, Upload Form, Social Share and Voting Plugin for WordPress: from n/a through 21.2.8.4.
network
low complexity
contest-gallery CWE-352
8.8
2024-02-12 CVE-2024-24929 Cross-Site Request Forgery (CSRF) vulnerability in Ftwr WP Contact Form
Cross-Site Request Forgery (CSRF) vulnerability in Ryan Duff, Peter Westwood WP Contact Form.This issue affects WP Contact Form: from n/a through 1.6.
network
low complexity
ftwr CWE-352
8.8
2024-02-12 CVE-2024-24935 Cross-Site Request Forgery (CSRF) vulnerability in Wpsimpletools Basic LOG Viewer
Cross-Site Request Forgery (CSRF) vulnerability in WpSimpleTools Basic Log Viewer.This issue affects Basic Log Viewer: from n/a through 1.0.4.
network
low complexity
wpsimpletools CWE-352
8.8
2024-02-11 CVE-2024-25417 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/add_translation.php.
network
low complexity
flusity CWE-352
8.8
2024-02-11 CVE-2024-25418 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/delete_menu.php.
network
low complexity
flusity CWE-352
8.8
2024-02-11 CVE-2024-25419 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
flusity-CMS v2.33 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /core/tools/update_menu.php.
network
low complexity
flusity CWE-352
8.8
2024-02-09 CVE-2023-50349 Cross-Site Request Forgery (CSRF) vulnerability in Hcltech Sametime 11.6/12.0
Sametime is impacted by a Cross Site Request Forgery (CSRF) vulnerability.
network
low complexity
hcltech CWE-352
8.8
2024-02-09 CVE-2024-23319 Cross-Site Request Forgery (CSRF) vulnerability in Mattermost Server
Mattermost Jira Plugin fails to protect against logout CSRF allowing an attacker to post a specially crafted message that would disconnect a user's Jira connection in Mattermost only by viewing the message.
network
low complexity
mattermost CWE-352
3.5
2024-02-09 CVE-2024-24819 Cross-Site Request Forgery (CSRF) vulnerability in Icinga Icingaweb2-Module-Incubator
icingaweb2-module-incubator is a working project of bleeding edge Icinga Web 2 libraries.
network
low complexity
icinga CWE-352
8.8
2024-02-09 CVE-2024-24820 Cross-Site Request Forgery (CSRF) vulnerability in Icinga
Icinga Director is a tool designed to make Icinga 2 configuration handling easy.
network
low complexity
icinga CWE-352
8.3