CWE-352
Medium likelihoodCross-Site Request Forgery (CSRF)
The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.
9,347 vulnerabilities with CWE-352
CVE-2024-34439
MEDIUM
divSpot DS Site Message <1.14.4 - CSRF
CVSS 4.3
CVE-2024-34427
MEDIUM
WP Favorite Posts < 1.6.8 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-32712
HIGH
Podlove Podcast Publisher <= 4.0.14 - Missing Authorization
CVSS 7.5
CVE-2024-31113
MEDIUM
Easy Digital Downloads < 3.2.11 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-4594
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in sys_safe.php
CVSS 4.3
CVE-2024-4593
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in sys_multiserv.php
CVSS 4.3
CVE-2024-4592
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in sys_group_edit.php
CVSS 4.3
CVE-2024-4591
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in sys_group_add.php
CVSS 4.3
CVE-2024-4590
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in sys_info.php
CVSS 4.3
CVE-2024-4589
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in mytag_edit.php
CVSS 4.3
CVE-2024-4588
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in mytag_add.php
CVSS 4.3
CVE-2024-4587
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in tpl.php
CVSS 4.3
CVE-2024-4586
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in shops_delivery.php
CVSS 4.3
CVE-2024-4600
HIGH
Socomec Net vision 7.20 - Cross-Site Request Forgery via set_param.cgi
CVSS 7.1
CVE-2024-4585
MEDIUM
DedeCMS 5.7 - Cross-Site Request Forgery in member_type.php
CVSS 4.3
CVE-2024-34379
MEDIUM
Rara Theme Restaurant and Cafe <1.2.1 - CSRF
CVSS 4.3
CVE-2024-34367
HIGH
Popup box < 4.1.2 - Cross-Site Request Forgery to Cross-Site Scripting
CVSS 7.1
CVE-2024-34069
HIGH
Werkzeug < 3.0.3 - Remote Code Execution via Debugger PIN Bypass
CVSS 7.5
CVE-2024-33830
HIGH
idccms v1.35 - Cross-Site Request Forgery via /admin/readDeal.php?mudi=clearWebCache
CVSS 8.1
CVE-2024-33829
MEDIUM
idccms v1.35 - Cross-Site Request Forgery via /admin/readDeal.php?mudi=updateWebCache
CVSS 5.4
CVE-2024-3756
HIGH
MF Gig Calendar < 1.2.1 - Cross-Site Request Forgery via Event Deletion
CVSS 7.5
CVE-2024-34502
CRITICAL
MediaWiki <1.39.6-1.41.1 - Info Disclosure
CVSS 9.8
CVE-2024-4086
MEDIUM
CM Tooltip Glossary - Powerful Glossary Plugin <4.2.11 - CSRF
CVSS 4.3
CVE-2024-4083
MEDIUM
Easy Restaurant Table Booking <1.0.0 - CSRF
CVSS 4.3
CVE-2024-3215
MEDIUM
Paid Memberships Pro < 3.0.1 - Cross-Site Request Forgery via pmpro_update_level_group_order()
CVSS 5.3
Details
Vulnerabilities
9,347
Exploit Likelihood
Medium