Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2024-02-02 CVE-2024-24470 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery vulnerability in flusity-CMS v.2.33 allows a remote attacker to execute arbitrary code via the update_post.php component.
network
low complexity
flusity CWE-352
8.8
2024-02-02 CVE-2023-6676 Cross-Site Request Forgery (CSRF) vulnerability in Nationalkeep Cybermath 1.4
Cross-Site Request Forgery (CSRF) vulnerability in National Keep Cyber Security Services CyberMath allows Cross Site Request Forgery.This issue affects CyberMath: from v1.4 before v1.5.
network
low complexity
nationalkeep CWE-352
8.8
2024-02-02 CVE-2024-24524 Cross-Site Request Forgery (CSRF) vulnerability in Flusity 2.33
Cross Site Request Forgery (CSRF) vulnerability in flusity-CMS v.2.33, allows remote attackers to execute arbitrary code via the add_menu.php component.
network
low complexity
flusity CWE-352
8.8
2024-02-02 CVE-2024-1162 Cross-Site Request Forgery (CSRF) vulnerability in Themeisle Orbit FOX
The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.10.29.
network
low complexity
themeisle CWE-352
4.3
2024-02-01 CVE-2024-22859 Cross-Site Request Forgery (CSRF) vulnerability in Laravel Livewire
Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary code getCsrfToken function.
network
low complexity
laravel CWE-352
8.8
2024-01-31 CVE-2024-22136 Cross-Site Request Forgery (CSRF) vulnerability in Droitthemes Droit Elementor Addons
Cross-Site Request Forgery (CSRF) vulnerability in DroitThemes Droit Elementor Addons – Widgets, Blocks, Templates Library For Elementor Builder.This issue affects Droit Elementor Addons – Widgets, Blocks, Templates Library For Elementor Builder: from n/a through 3.1.5.
network
low complexity
droitthemes CWE-352
8.8
2024-01-31 CVE-2024-22140 Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder
Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder Pro.This issue affects Profile Builder Pro: from n/a through 3.10.0.
network
low complexity
cozmoslabs CWE-352
8.8
2024-01-31 CVE-2024-22143 Cross-Site Request Forgery (CSRF) vulnerability in Wpspellcheck
Cross-Site Request Forgery (CSRF) vulnerability in WP Spell Check.This issue affects WP Spell Check: from n/a through 9.17.
network
low complexity
wpspellcheck CWE-352
8.8
2024-01-31 CVE-2024-22285 Cross-Site Request Forgery (CSRF) vulnerability in Elisebosse Frontpage Manager 1.3
Cross-Site Request Forgery (CSRF) vulnerability in Elise Bosse Frontpage Manager.This issue affects Frontpage Manager: from n/a through 1.3.
network
low complexity
elisebosse CWE-352
8.8
2024-01-31 CVE-2024-22291 Cross-Site Request Forgery (CSRF) vulnerability in Marcomilesi Browser Theme Color 1.3
Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi Browser Theme Color.This issue affects Browser Theme Color: from n/a through 1.3.
network
low complexity
marcomilesi CWE-352
8.8