Vulnerabilities > Cross-Site Request Forgery (CSRF)
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-02-05 | CVE-2024-0796 | Cross-Site Request Forgery (CSRF) vulnerability in Pluginus Woot The Active Products Tables for WooCommerce. | 4.3 |
2024-02-05 | CVE-2024-0859 | Cross-Site Request Forgery (CSRF) vulnerability in Wpaffiliatemanager Affiliates Manager The Affiliates Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.9.34. | 4.3 |
2024-02-05 | CVE-2024-24468 | Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33 Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via the add_customblock.php. | 8.8 |
2024-02-05 | CVE-2024-24469 | Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33 Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via the delete_post .php. | 8.8 |
2024-02-02 | CVE-2024-23831 | Cross-Site Request Forgery (CSRF) vulnerability in Ledgersmb LedgerSMB is a free web-based double-entry accounting system. | 7.5 |
2024-02-02 | CVE-2024-24470 | Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33 Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via the update_post.php component. | 8.8 |
2024-02-02 | CVE-2024-24524 | Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33 Cross Site Request Forgery (CSRF) vulnerability in flusity-CMS v.2.33, allows remote attackers to execute arbitrary code via the add_menu.php component. | 8.8 |
2024-02-02 | CVE-2024-1162 | Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Orbit FOX The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.10.29. | 4.3 |
2024-02-01 | CVE-2024-22859 | Cross-Site Request Forgery (CSRF) vulnerability in Laravel Livewire Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary code getCsrfToken function. | 8.8 |
2024-01-31 | CVE-2024-22140 | Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder Pro.This issue affects Profile Builder Pro: from n/a through 3.10.0. | 8.8 |