Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-02-05 CVE-2024-0796 Cross-Site Request Forgery (CSRF) vulnerability in Pluginus Woot
The Active Products Tables for WooCommerce.
network
low complexity
pluginus CWE-352
4.3
2024-02-05 CVE-2024-0859 Cross-Site Request Forgery (CSRF) vulnerability in Wpaffiliatemanager Affiliates Manager
The Affiliates Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.9.34.
network
low complexity
wpaffiliatemanager CWE-352
4.3
2024-02-05 CVE-2024-24468 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via the add_customblock.php.
network
low complexity
flusity CWE-352
8.8
2024-02-05 CVE-2024-24469 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via the delete_post .php.
network
low complexity
flusity CWE-352
8.8
2024-02-02 CVE-2024-23831 Cross-Site Request Forgery (CSRF) vulnerability in Ledgersmb
LedgerSMB is a free web-based double-entry accounting system.
network
high complexity
ledgersmb CWE-352
7.5
2024-02-02 CVE-2024-24470 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via the update_post.php component.
network
low complexity
flusity CWE-352
8.8
2024-02-02 CVE-2024-24524 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery (CSRF) vulnerability in flusity-CMS v.2.33, allows remote attackers to execute arbitrary code via the add_menu.php component.
network
low complexity
flusity CWE-352
8.8
2024-02-02 CVE-2024-1162 Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Orbit FOX
The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.10.29.
network
low complexity
themeisle CWE-352
4.3
2024-02-01 CVE-2024-22859 Cross-Site Request Forgery (CSRF) vulnerability in Laravel Livewire
Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary code getCsrfToken function.
network
low complexity
laravel CWE-352
8.8
2024-01-31 CVE-2024-22140 Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder
Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder Pro.This issue affects Profile Builder Pro: from n/a through 3.10.0.
network
low complexity
cozmoslabs CWE-352
8.8