Browse and filter security vulnerabilities across ecosystems
Browse and filter security vulnerabilities across ecosystems
b2evolution 7.2.2 - 'edit account details' Cross-Site Request Forgery (CSRF)
CSRF Protection Bypass: Sensitive endpoints accept GET requests, enabling admin account takeover
Arunna 1.0.0 - 'Multiple' Cross-Site Request Forgery (CSRF)
Stopwords for comments <= 1.1 - Missing Authorization to Cross-Site Request Forgery
SocialChamp with WordPress <= 1.3.3 - Cross-Site Request Forgery to Plugin Settings Update
Sosh Share Buttons <= 1.1.0 - Cross-Site Request Forgery
WPBlogSyn <= 1.0 - Cross-Site Request Forgery to Arbitrary Remote Sync Configuration Update
DASHBOARD BUILDER <= 1.5.7 - Cross-Site Request Forgery to SQL Injection
Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App (Intercompany Balance Reconciliation)
PILOS affected by a CSRF via GET request allows unintentional termination of all active video conferences
User Registration & Membership <= 4.4.8 - Cross-Site Request Forgery to Arbitrary Post Deletion
React Router has CSRF issue in Action/Server Action Request Processing
GestSup <= 3.2.56 CSRF Allows Privileged Actions
Clearfy <= 2.4.0 - Cross-Site Request Forgery to Update Notification Tampering
Authlib: 1-click Account Takeover
Leica Geosystems GR10/GR25/GR30/GR50 GNSS 4.30.063 Cross-Site Request Forgery
Simcast <= 1.0.0 - Cross-Site Request Forgery to Settings Update
Mamurjor Employee Info <= 1.0.0 - Cross-Site Request Forgery to Arbitrary Employee and Related Data Manipulation
Sticky Action Buttons <= 1.1 - Cross-Site Request Forgery to Plugin Settings Update
WP Status Notifier <= 1.0 - Cross-Site Request Forgery to Settings Update
Showing 1 - 20 of 1,000+ results