Weaknesses of type CWE-352
5,677 resultsCVE-2022-25600MEDIUMWordPress WP Google Map plugin <= 4.2.3 - Cross-Site Request Forgery (CSRF) vulnerabilityEPSS 0.5%CVE-2021-36886MEDIUMWordPress Contact Form 7 Database Addon – CFDB7 plugin <= 1.2.5.9 - Cross-Site Request Forgery (CSRF) vulnerabilityEPSS 0.5%CVE-2022-24712MEDIUMCross-Site Request Forgery (CSRF) Protection Bypass Vulnerability in CodeIgniter4EPSS 0.5%CVE-2021-24823—Support Board < 3.3.6 - Arbitrary File Deletion via CSRFEPSS 0.5%CVE-2021-24936—WP Extra File Types < 0.5.1 - CSRF to Stored Cross-Site ScriptingEPSS 0.5%CVE-2021-4422MEDIUMPOST SMTP Mailer <= 2.0.20 - Cross-Site Request Forgery BypassEPSS 0.5%CVE-2021-24490—Email Artillery <= 4.1 - Arbitrary File UploadEPSS 0.5%CVE-2021-4164HIGHCross-Site Request Forgery (CSRF) in janeczku/calibre-webEPSS 0.5%CVE-2022-3221HIGHCross-Site Request Forgery (CSRF) in ikus060/rdiffwebEPSS 0.5%CVE-2025-26206CRITICALCross Site Request Forgery vulnerability in sell done storefront v.1.0 allows a remote attacker to escalate privileges via the index.html coEPSS 0.5%CVE-2021-4131MEDIUMCross-Site Request Forgery (CSRF) in livehelperchat/livehelperchatEPSS 0.5%CVE-2023-27490HIGHMissing proper state, nonce and PKCE checks for OAuth authentication in next-authEPSS 0.5%CVE-2021-24989—Accept Donations with PayPal < 1.3.4 - Arbitrary Post Deletion via CSRFEPSS 0.5%CVE-2021-3901LOWCross-Site Request Forgery (CSRF) in firefly-iii/firefly-iiiEPSS 0.5%CVE-2020-3135MEDIUMCisco Unified Communications Manager Cross-Site Request Forgery VulnerabilityEPSS 0.5%CVE-2021-24922—Pixel Cat Lite < 2.6.2 - CSRF to Stored Cross-Site ScriptingEPSS 0.5%CVE-2022-41925LOWTailscale daemon is vulnerable to information disclosure via CSRFEPSS 0.5%CVE-2021-22954—A cross-site request forgery vulnerability exists in Concrete CMS <v9 that could allow an attacker to make requests on behalf of other usersEPSS 0.5%CVE-2022-0830—FormBuilder <= 1.08 - Stored Cross-Site Scripting via CSRFEPSS 0.5%CVE-2021-25072—NextScripts: Social Networks Auto-Poster < 4.3.25 - Arbitrary Post Deletion via CSRFEPSS 0.5%