CWE-352

Medium likelihood

Cross-Site Request Forgery (CSRF)

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.

9,347 vulnerabilities with CWE-352
CVE-2024-53765 HIGH
Think201 Mins To Read <1.2.2 - CSRF
CVSS 7.1
CVE-2024-53762 HIGH
FastBook <= 1.1 - Cross-Site Request Forgery to Stored XSS
CVSS 7.1
CVE-2024-53761 MEDIUM
P. Roy WP Revisions Manager <1.0.3 - CSRF
CVSS 5.4
CVE-2024-53755 HIGH
Third Party Cookie Eraser <1.0.2 - CSRF
CVSS 7.1
CVE-2024-53754 HIGH
Arrow Design Out Of Stock Badge <1.3.1 - CSRF
CVSS 7.1
CVE-2024-53753 HIGH
CultBooking Hotel Booking Engine -n/a-2.1 - CSRF
CVSS 7.1
CVE-2024-53751 MEDIUM
Build App Online <= 1.0.23 - Cross-Site Request Forgery
CVSS 5.4
CVE-2024-53730 HIGH
Aaron Hodge Silver April's Call Posts <2.1.1 - CSRF
CVSS 7.1
CVE-2024-53729 HIGH
Plumeria Web Design Blizzard Quotes - XSS
CVSS 7.1
CVE-2024-53728 HIGH
SEO-Küche Protect Your Content <=1.0.2 - CSRF
CVSS 7.1
CVE-2024-53727 HIGH
LinkLaunder SEO <= 0.92.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
CVE-2024-53726 HIGH
RealtyCandy IDX Broker Extended - Stored XSS
CVSS 7.1
CVE-2024-53725 HIGH
Script-Recipes Post Hits Counter <2.8.23 - CSRF
CVSS 7.1
CVE-2024-53724 HIGH
IceStats <= 1.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
CVE-2024-53723 HIGH
Google Plus Share & +1 Button <1.0 - CSRF
CVSS 7.1
CVE-2024-53722 HIGH
Rockemmusic Favicon My Blog <1.0.2 - CSRF
CVSS 7.1
CVE-2024-53720 HIGH
ole1986, MachineITSvcs WP-ISPConfig 3 - CSRF
CVSS 7.1
CVE-2024-53719 HIGH
Zajax - Ajax Navigation <= 0.4 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
CVE-2024-53718 HIGH
Eric Teubert Multi Feed Reader <2.2.4 - CSRF
CVSS 7.1
CVE-2024-53717 HIGH
yPHPlista <= 1.1.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
CVE-2024-53716 HIGH
overtrue wp auto top <= 2.9.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
CVE-2024-53715 HIGH
Thomas Hoefter Simple Travel Map - CSRF
CVSS 7.1
CVE-2024-53714 HIGH
Arrow Design Continue Shopping From Cart <1.3 - CSRF
CVSS 7.1
CVE-2024-53713 HIGH
Alain Diart & Eric Ambrosi - Stored XSS
CVSS 7.1
CVE-2024-53712 HIGH
Kevin's < 2.0.0 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
Details
Vulnerabilities 9,347
Exploit Likelihood Medium