CWE-352

Medium likelihood

Cross-Site Request Forgery (CSRF)

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.

9,321 vulnerabilities with CWE-352
CVE-2025-58844 HIGH
Subhash Kumar Database to Excel <1.0 - CSRF
CVSS 7.1
CVE-2025-58843 HIGH
Auto Last Youtube Video <1.0.8 - CSRF/XSS
CVSS 7.1
CVE-2025-58833 HIGH
INVELITY MyGLS connect <1.1.1 - CSRF
CVSS 8.8
CVE-2025-58831 MEDIUM
Parallax Scrolling Enllax.js - CSRF
CVSS 4.3
CVE-2025-58818 MEDIUM
SwiftNinjaPro Developer Tools Blocker <3.2.1 - CSRF
CVSS 5.4
CVE-2025-58809 HIGH
To Lead For Salesforce <2.7.3.9 - CSRF
CVSS 7.1
CVE-2025-58807 HIGH
Dsingh Purge Varnish Cache <2.6 - CSRF
CVSS 7.1
CVE-2025-58806 HIGH
imjoehaines WordPress Error Monitoring <1.6.3 - CSRF
CVSS 7.1
CVE-2025-58804 MEDIUM
WooCommerce Single Page Checkout <1.2.7 - CSRF
CVSS 4.3
CVE-2025-58802 MEDIUM
TrustMate.io - WooCommerce <1.14.0 - CSRF
CVSS 4.3
CVE-2025-58801 MEDIUM
KCS Responder <= 4.3.8 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-58800 MEDIUM
WP Email Template <= 2.8.5 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-58799 MEDIUM
Custom WooCommerce Checkout Fields Editor <1.3.4 - CSRF
CVSS 4.3
CVE-2025-58798 MEDIUM
Bjorn Manintveld BCM Duplicate Menu - CSRF
CVSS 4.3
CVE-2025-58794 MEDIUM
Notification for Telegram <3.4.6 - CSRF
CVSS 4.3
CVE-2025-58792 MEDIUM
WPKube Authors List <2.0.6.1 - CSRF
CVSS 4.3
CVE-2025-9616 MEDIUM
PopAd <= 1.0.4 - Cross-Site Request Forgery via PopAd_reset_cookie_time Function
CVSS 5.3
CVE-2025-20326 MEDIUM
Cisco Unified Communications Manager - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-58611 MEDIUM
Tickera <= 3.5.5.6 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-58272 LOW
Web Caster V130 <= 1.08 - Cross-Site Request Forgery
CVSS 3.7
CVE-2025-0610 HIGH
Aknsoft QR Men s1.05.06-v1.05.12 - Cross-Site Request Forgery
CVSS 8.6
CVE-2025-9747 MEDIUM
Koillection < 1.7.0 - Cross-Site Request Forgery in CSRF Protection Controller
CVSS 4.3
CVE-2025-9618 MEDIUM
WordPress Related Posts Lite <1.12 - CSRF
CVSS 4.3
CVE-2025-9374 MEDIUM
WordPress Ultimate Tag Warrior Importer <0.3 - CSRF
CVSS 4.3
CVE-2025-48363 MEDIUM
Popup for CF7 with Sweet Alert <1.6.5 - CSRF
CVSS 4.3
Details
Vulnerabilities 9,321
Exploit Likelihood Medium