Vulnerabilities > Cross-Site Request Forgery (CSRF)

DATE CVE VULNERABILITY TITLE RISK
2023-11-07 CVE-2023-46242 Cross-Site Request Forgery (CSRF) vulnerability in Xwiki
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.
network
low complexity
xwiki CWE-352
8.8
2023-11-07 CVE-2023-5532 Cross-Site Request Forgery (CSRF) vulnerability in Imagemapper Project Imagemapper 1.2.6
The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6.
network
low complexity
imagemapper-project CWE-352
4.3
2023-11-07 CVE-2023-5975 Cross-Site Request Forgery (CSRF) vulnerability in Imagemapper Project Imagemapper 1.2.6
The ImageMapper plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.2.6.
network
low complexity
imagemapper-project CWE-352
4.3
2023-11-07 CVE-2023-5900 Cross-Site Request Forgery (CSRF) vulnerability in SFU PKP web Application Library
Cross-Site Request Forgery in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
network
low complexity
sfu CWE-352
4.3
2023-11-07 CVE-2023-5902 Cross-Site Request Forgery (CSRF) vulnerability in SFU PKP web Application Library
Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
network
low complexity
sfu CWE-352
4.3
2023-11-06 CVE-2023-46781 Cross-Site Request Forgery (CSRF) vulnerability in Rolandmurg Current Menu Item for Custom Post Types 1.5
Cross-Site Request Forgery (CSRF) vulnerability in Roland Murg Current Menu Item for Custom Post Types plugin <= 1.5 versions.
network
low complexity
rolandmurg CWE-352
8.8
2023-11-06 CVE-2023-46775 Cross-Site Request Forgery (CSRF) vulnerability in Zixn Original Texts Yandex Webmaster
Cross-Site Request Forgery (CSRF) vulnerability in Djo Original texts Yandex WebMaster plugin <= 1.18 versions.
network
low complexity
zixn CWE-352
8.8
2023-11-03 CVE-2023-5945 Cross-Site Request Forgery (CSRF) vulnerability in I13Websolution Video Carousel Slider With Lightbox 1.0
The video carousel slider with lightbox plugin for WordPress is vulnerable to Cross-Site Request Forgery in version 1.0.
network
low complexity
i13websolution CWE-352
5.4
2023-11-03 CVE-2023-42027 Cross-Site Request Forgery (CSRF) vulnerability in IBM Cics TX and Txseries for Multiplatforms
IBM CICS TX Standard 11.1, Advanced 10.1, 11.1, and TXSeries for Multiplatforms 8.1, 8.2, 9.1 are vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
network
low complexity
ibm CWE-352
8.8
2023-11-01 CVE-2023-5899 Cross-Site Request Forgery (CSRF) vulnerability in PKP web Application Library
Cross-Site Request Forgery (CSRF) in GitHub repository pkp/pkp-lib prior to 3.3.0-16.
network
low complexity
pkp CWE-352
8.8