Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2024-24524 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery (CSRF) vulnerability in flusity-CMS v.2.33, allows remote attackers to execute arbitrary code via the add_menu.php component.
network
low complexity
flusity CWE-352
8.8
2024-02-02 CVE-2024-1162 Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Orbit FOX
The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.10.29.
network
low complexity
themeisle CWE-352
4.3
2024-02-01 CVE-2024-22859 Cross-Site Request Forgery (CSRF) vulnerability in Laravel Livewire
Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary code getCsrfToken function.
network
low complexity
laravel CWE-352
8.8
2024-01-31 CVE-2024-22140 Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder
Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder Pro.This issue affects Profile Builder Pro: from n/a through 3.10.0.
network
low complexity
cozmoslabs CWE-352
8.8
2024-01-31 CVE-2024-22143 Cross-Site Request Forgery (CSRF) vulnerability in Wpspellcheck
Cross-Site Request Forgery (CSRF) vulnerability in WP Spell Check.This issue affects WP Spell Check: from n/a through 9.17.
network
low complexity
wpspellcheck CWE-352
8.8
2024-01-31 CVE-2024-22285 Cross-Site Request Forgery (CSRF) vulnerability in Elisebosse Frontpage Manager 1.3
Cross-Site Request Forgery (CSRF) vulnerability in Elise Bosse Frontpage Manager.This issue affects Frontpage Manager: from n/a through 1.3.
network
low complexity
elisebosse CWE-352
8.8
2024-01-31 CVE-2024-22291 Cross-Site Request Forgery (CSRF) vulnerability in Marcomilesi Browser Theme Color 1.3
Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi Browser Theme Color.This issue affects Browser Theme Color: from n/a through 1.3.
network
low complexity
marcomilesi CWE-352
8.8
2024-01-31 CVE-2024-22304 Cross-Site Request Forgery (CSRF) vulnerability in Borbis Freshmail for Wordpress 2.3.2
Cross-Site Request Forgery (CSRF) vulnerability in Borbis Media FreshMail For WordPress.This issue affects FreshMail For WordPress: from n/a through 2.3.2.
network
low complexity
borbis CWE-352
8.8
2024-01-30 CVE-2024-22643 Cross-Site Request Forgery (CSRF) vulnerability in Seopanel SEO Panel 4.10.0
A Cross-Site Request Forgery (CSRF) vulnerability in SEO Panel version 4.10.0 allows remote attackers to perform unauthorized user password resets.
network
low complexity
seopanel CWE-352
6.5
2024-01-30 CVE-2023-51813 Cross-Site Request Forgery (CSRF) vulnerability in Free and Open Source Inventory Management System Project Free and Open Source Inventory Management System 1.0
Cross Site Request Forgery (CSRF) vulnerability in Free Open-Source Inventory Management System v.1.0 allows a remote attacker to execute arbitrary code via the staff_list parameter in the index.php component.
6.5