Filtered by CWE-352
Total 7170 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-28497 1 Tribulant 1 Slideshow Gallery 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Tribulant Slideshow Gallery LITE plugin <= 1.7.6 versions.
CVE-2023-28495 1 Mythemeshop 1 Wp Shortcode 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in MyThemeShop WP Shortcode by MyThemeShop plugin <= 1.4.16 versions.
CVE-2023-28420 1 Leocaseiro 1 Custom Options Plus 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Leo Caseiro Custom Options Plus plugin <= 1.8.1 versions.
CVE-2023-28419 1 Strangerstudios 1 Force Display Name 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Stranger Studios Force First and Last Name as Display Name plugin <= 1.2 versions.
CVE-2023-28335 1 Moodle 1 Moodle 2024-11-21 8.8 High
The link to reset all templates of a database activity did not include the necessary token to prevent a CSRF risk.
CVE-2023-28167 1 Vsourz 1 Cf7 Invisible Recaptcha 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Vsourz Digital CF7 Invisible reCAPTCHA plugin <= 1.3.3 versions.
CVE-2023-28023 1 Hcltech 1 Bigfix Webui 2024-11-21 4.9 Medium
A cross site request forgery vulnerability in the BigFix WebUI Software Distribution interface site version 44 and before allows an NMO attacker to access files on server side systems (server machine and all the ones in its network). 
CVE-2023-27634 1 Intrepidity Project 1 Intrepidity 2024-11-21 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability allows arbitrary file upload in Shingo Intrepidity plugin <= 1.5.1 versions.
CVE-2023-27633 1 Pixelgrade 1 Customify 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Customify – Intuitive Website Styling plugin <= 2.10.4 versions.
CVE-2023-27632 1 Mmrs151 1 Daily Prayer Time 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in mmrs151 Daily Prayer Time plugin <= 2023.03.08 versions.
CVE-2023-27623 1 Jenst 1 Wp Page Numbers 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Jens Törnell WP Page Numbers plugin <= 0.5 versions.
CVE-2023-27615 1 Dipakgajjar 1 Wp Super Minify 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Dipak C. Gajjar WP Super Minify plugin <= 1.5.1 versions.
CVE-2023-27611 1 Jeanbaptisteaudras 1 Reusable Blocks Extended 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in audrasjb Reusable Blocks Extended plugin <= 0.9 versions.
CVE-2023-27606 1 Wp Reroute Email Project 1 Wp Reroute Email 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Sajjad Hossain WP Reroute Email plugin <= 1.4.6 versions.
CVE-2023-27461 1 Yoohooplugins 1 When Last Login 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Yoohoo Plugins When Last Login plugin <= 1.2.1 versions.
CVE-2023-27458 1 Wpstream 1 Wpstream 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in wpstream WpStream plugin <= 4.4.10 versions.
CVE-2023-27457 1 Passionatebrains 1 Add Expires Headers \& Optimized Minify 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Passionate Brains Add Expires Headers & Optimized Minify plugin <= 2.7 versions.
CVE-2023-27453 1 Lws 1 Lws Tools 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in LWS LWS Tools plugin <= 2.3.1 versions.
CVE-2023-27448 1 Makestories 1 Makestories \(for Google Web Stories\) 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in MakeStories Team MakeStories (for Google Web Stories) plugin <= 2.8.0 versions.
CVE-2023-27446 1 Fluenx 1 Deepl Pro Api Translation 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Fluenx DeepL API translation plugin <= 2.1.4 versions.