CWE-352

Medium likelihood

Cross-Site Request Forgery (CSRF)

Parent: CWE-345 - Insufficient Verification of Data Authenticity

The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor.

9,346 vulnerabilities with CWE-352
CVE-2024-37543 MEDIUM
Nitesh Singh Ultimate Auction <4.2.5 - CSRF
CVSS 4.3
CVE-2024-37540 MEDIUM
Leaky Paywall <= 4.21.2 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37518 MEDIUM
The Events Calendar <6.5.1.4 - CSRF
CVSS 4.3
CVE-2024-37511 MEDIUM
SWTE Swift Performance Lite <2.3.6.20 - CSRF
CVSS 4.3
CVE-2024-37508 MEDIUM
raratheme Construction Landing Page <= 1.3.5 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37503 MEDIUM
Lawyer Landing Page <= 1.2.4 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37493 MEDIUM
Posterity <= 3.3 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37491 MEDIUM
Rife Free <= 2.4.18 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37490 MEDIUM
Bard <= 2.210 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37478 MEDIUM
Ashe <= 2.233 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37473 MEDIUM
BlazeThemes Trendy News <1.0.15 - CSRF
CVSS 4.3
CVE-2024-37469 MEDIUM
Blocksy <= 2.0.22 - Cross-Site Request Forgery
CVSS 5.4
CVE-2024-37467 MEDIUM
Hestia <= 3.1.2 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37458 MEDIUM
ExtendThemes Highlight <= 1.0.29 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37451 MEDIUM
raratheme Travel Agency <= 1.4.9 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37450 MEDIUM
Benevolent <= 1.3.4 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37448 MEDIUM
FameThemes OnePress <= 2.3.6 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37441 MEDIUM
NewsMash <= 1.0.34 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37435 MEDIUM
Perfect Portfolio <= 1.2.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37431 MEDIUM
Mesmerize <= 1.6.120 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37426 MEDIUM
Elegant Pink <= 1.3.0 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37421 MEDIUM
raratheme JobScout <= 1.1.4 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37417 MEDIUM
Coachify <= 1.0.7 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37413 MEDIUM
raratheme Preschool and Kindergarten <= 1.2.1 - Cross-Site Request Forgery
CVSS 4.3
CVE-2024-37412 MEDIUM
blossomthemes Blossom Shop <= 1.1.7 - Cross-Site Request Forgery
CVSS 4.3
Details
Vulnerabilities 9,346
Exploit Likelihood Medium