Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2024-24524 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery (CSRF) vulnerability in flusity-CMS v.2.33, allows remote attackers to execute arbitrary code via the add_menu.php component.
network
low complexity
flusity CWE-352
8.8
2024-02-02 CVE-2024-1162 Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Orbit FOX
The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.10.29.
network
low complexity
themeisle CWE-352
4.3
2024-02-01 CVE-2024-22859 Cross-Site Request Forgery (CSRF) vulnerability in Laravel Livewire
Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary code getCsrfToken function.
network
low complexity
laravel CWE-352
8.8
2024-01-31 CVE-2024-22136 Cross-Site Request Forgery (CSRF) vulnerability in Droitthemes Droit Elementor Addons
Cross-Site Request Forgery (CSRF) vulnerability in DroitThemes Droit Elementor Addons – Widgets, Blocks, Templates Library For Elementor Builder.This issue affects Droit Elementor Addons – Widgets, Blocks, Templates Library For Elementor Builder: from n/a through 3.1.5.
network
low complexity
droitthemes CWE-352
8.8
2024-01-31 CVE-2024-22140 Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder
Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder Pro.This issue affects Profile Builder Pro: from n/a through 3.10.0.
network
low complexity
cozmoslabs CWE-352
8.8
2024-01-31 CVE-2024-22143 Cross-Site Request Forgery (CSRF) vulnerability in Wpspellcheck
Cross-Site Request Forgery (CSRF) vulnerability in WP Spell Check.This issue affects WP Spell Check: from n/a through 9.17.
network
low complexity
wpspellcheck CWE-352
8.8
2024-01-31 CVE-2024-22285 Cross-Site Request Forgery (CSRF) vulnerability in Elisebosse Frontpage Manager 1.3
Cross-Site Request Forgery (CSRF) vulnerability in Elise Bosse Frontpage Manager.This issue affects Frontpage Manager: from n/a through 1.3.
network
low complexity
elisebosse CWE-352
8.8
2024-01-31 CVE-2024-22291 Cross-Site Request Forgery (CSRF) vulnerability in Marcomilesi Browser Theme Color 1.3
Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi Browser Theme Color.This issue affects Browser Theme Color: from n/a through 1.3.
network
low complexity
marcomilesi CWE-352
8.8
2024-01-31 CVE-2024-22304 Cross-Site Request Forgery (CSRF) vulnerability in Borbis Freshmail for Wordpress 2.3.2
Cross-Site Request Forgery (CSRF) vulnerability in Borbis Media FreshMail For WordPress.This issue affects FreshMail For WordPress: from n/a through 2.3.2.
network
low complexity
borbis CWE-352
8.8
2024-01-31 CVE-2024-22287 Cross-Site Request Forgery (CSRF) vulnerability in Ludek Better Anchor Links 1.7.5
Cross-Site Request Forgery (CSRF) vulnerability in Ludek Melichar Better Anchor Links allows Cross-Site Scripting (XSS).This issue affects Better Anchor Links: from n/a through 1.7.5.
network
low complexity
ludek CWE-352
6.1