Filtered by CWE-352
Filtered by vendor Subscriptions
Total 8343 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-46629 1 Themelocation 1 Remove Add To Cart Woocommerce 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in themelocation Remove Add to Cart WooCommerce plugin <= 1.4.4.
CVE-2023-46625 1 Daext 1 Autolinks Manager 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in DAEXT Autolinks Manager plugin <= 1.10.04 versions.
CVE-2023-46620 1 Fluenx 1 Deepl Api Translation 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Fluenx DeepL API translation plugin <= 2.3.9.1 versions.
CVE-2023-46619 1 Web-dorado 1 Wdsocialwidgets 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in WebDorado WDSocialWidgets plugin <= 1.0.15 versions.
CVE-2023-46618 1 Bala-krishna 1 Category Seo Meta Tags 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Bala Krishna, Sergey Yakovlev Category SEO Meta Tags plugin <= 2.5 versions.
CVE-2023-46617 1 Wpfoxly 1 Adfoxly 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt.This issue affects AdFoxly – Ad Manager, AdSense Ads & Ads.Txt: from n/a through 1.8.5.
CVE-2023-46614 1 Matbao 1 Wp Helper Premium 2024-11-21 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Mat Bao Corp WP Helper Premium plugin <= 4.5.1 versions.
CVE-2023-46375 1 Zentao 1 Biz 2024-11-21 8.8 High
ZenTao Biz version 4.1.3 and before is vulnerable to Cross Site Request Forgery (CSRF).
CVE-2023-46242 1 Xwiki 1 Xwiki 2024-11-21 9.7 Critical
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In affected versions it's possible to execute a content with the right of any user via a crafted URL. A user must have `programming` privileges in order to exploit this vulnerability. This issue has been patched in XWiki 14.10.7 and 15.2RC1. Users are advised to upgrade. There are no known workarounds for for this vulnerability.
CVE-2023-46212 1 Wpvnteam 1 Wp Extra 2024-11-21 6.3 Medium
Missing Authorization, Cross-Site Request Forgery (CSRF) vulnerability in TienCOP WP EXtra allows Accessing Functionality Not Properly Constrained by ACLs, Cross Site Request Forgery.This issue affects WP EXtra: from n/a through 6.2.
CVE-2023-46204 1 Mullerdigital 1 Duplicate Theme 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Muller Digital Inc. Duplicate Theme plugin <= 0.1.6 versions.
CVE-2023-46202 1 Auto Login New User After Registration Project 1 Auto Login New User After Registration 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Jeff Sherk Auto Login New User After Registration plugin <= 1.9.6 versions.
CVE-2023-46201 1 Auto Login New User After Registration Project 1 Auto Login New User After Registration 2024-11-21 7.1 High
Cross-Site Request Forgery (CSRF) vulnerability in Jeff Sherk Auto Login New User After Registration allows Stored XSS.This issue affects Auto Login New User After Registration: from n/a through 1.9.6.
CVE-2023-46198 1 Apointzilla 1 Appointment Calendar 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Scientech It Solution Appointment Calendar plugin <= 2.9.6 versions.
CVE-2023-46193 1 Internetmarketingninjas 1 Internal Link Building 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Internet Marketing Ninjas Internal Link Building plugin <= 1.2.3 versions.
CVE-2023-46191 1 Underdock 1 Open Graph Metabox 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Niels van Renselaar Open Graph Metabox plugin <= 1.4.4 versions.
CVE-2023-46190 1 Novo-media 1 Novo-map\ 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Novo-media Novo-Map : your WP posts on custom google maps plugin <= 1.1.2 versions.
CVE-2023-46189 1 Xtendify 1 Simple Calendar 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Simple Calendar – Google Calendar Plugin <= 3.2.5 versions.
CVE-2023-46151 1 Awesometogi 1 Product Category Tree 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in AWESOME TOGI Product Category Tree plugin <= 2.5 versions.
CVE-2023-46150 1 Wpmilitary 1 Wp Radio 2024-11-21 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in WP Military WP Radio plugin <= 3.1.9 versions.