CWE-352

Medium likelihood

Cross-Site Request Forgery (CSRF)

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.

9,337 vulnerabilities with CWE-352
CVE-2025-24549 HIGH
Mahbubur Rahman Post Meta <1.0.9 - CSRF/XSS
CVSS 7.1
CVE-2025-23990 HIGH
Scroll Styler <= 1.1 - Cross-Site Request Forgery
CVSS 7.1
CVE-2025-23989 HIGH
Alessandro Piconi - SabLab Internal Link Builder - CSRF
CVSS 7.1
CVE-2025-23985 MEDIUM
Brainvireinfo Dynamic URL SEO - CSRF
CVSS 5.4
CVE-2025-23980 HIGH
James Andrews Full Circle <0.5.7.8 - CSRF
CVSS 7.1
CVE-2025-23978 HIGH
Ninos Ego FlashCounter <1.1.8 - CSRF
CVSS 7.1
CVE-2025-23977 HIGH
Bhaskar Dhote Post Carousel Slider <2.0.1 - CSRF
CVSS 7.1
CVE-2025-23976 HIGH
Issuu Panel <= 2.1.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
CVE-2025-24742 MEDIUM
WP Go Maps <= 9.0.40 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-24540 MEDIUM
SeedProd Coming Soon Page < 6.18.9 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-24538 MEDIUM
slaFFik BuddyPress Groups Extras <3.6.10 - CSRF
CVSS 5.4
CVE-2025-24537 MEDIUM
The Events Calendar <= 6.7.0 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-24533 MEDIUM
MetaSlider Responsive Slider <3.92.0 - CSRF
CVSS 5.4
CVE-2025-24756 HIGH
mgplugin Roi Calculator <= 1.0 - Cross-Site Request Forgery to Stored Cross-Site Scripting
CVSS 7.1
CVE-2025-24739 MEDIUM
FluentSMTP <= 2.2.80 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-24738 MEDIUM
Call Now Button <= 1.4.13 - Cross-Site Request Forgery
CVSS 4.3
CVE-2025-24724 MEDIUM
Side Menu Lite <= 5.3.1 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-24720 MEDIUM
Wow-Company Sticky Buttons <4.1.1 - CSRF
CVSS 5.4
CVE-2025-24717 MEDIUM
Wow-Company Modal Window <= 6.1.4 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-24716 MEDIUM
Wow-Company Herd Effects <6.2.1 - CSRF
CVSS 5.4
CVE-2025-24715 MEDIUM
Wow-Company Counter Box <= 2.0.5 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-24714 MEDIUM
Bubble Menu - circle floating menu <= 4.0.2 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-24713 MEDIUM
Wow-Company Button Generator <3.1.1 - CSRF
CVSS 5.4
CVE-2025-24712 MEDIUM
Radius Blocks <= 2.1.2 - Cross-Site Request Forgery
CVSS 5.4
CVE-2025-24711 MEDIUM
Wow-Company Popup Box <3.2.4 - CSRF
CVSS 5.4
Details
Vulnerabilities 9,337
Exploit Likelihood Medium