Weaknesses of type CWE-352

5,688 results
CVE-2022-1914Clean-Contact <= 1.6 - Arbitrary Settings Update to Stored XSS via CSRFEPSS 0.4%CVE-2021-24349Gallery From Files <= 1.6.0 - Reflected Cross-Site Scripting (XSS)EPSS 0.4%CVE-2022-1594HC Custom WP-Admin URL <= 1.4 - Arbitrary Settings Update via CSRFEPSS 0.4%CVE-2024-29026HIGHOwncast cross origin requestEPSS 0.4%CVE-2024-3146MEDIUMDedeCMS makehtml_rss_action.php cross-site request forgeryEPSS 0.4%CVE-2022-1844WP Sentry <= 1.0 - Arbitrary Settings Update to Stored XSS via CSRFEPSS 0.4%CVE-2021-24535Light Messages <= 1.0 - CSRF to Stored XSSEPSS 0.4%CVE-2022-1653Social Share Buttons by Supsystic < 2.2.4 - Multiple CSRFEPSS 0.4%CVE-2022-1627My Private Site < 3.0.8 - Arbitrary Settings Update via CSRFEPSS 0.4%CVE-2022-1847Rotating Posts <= 1.11 - Arbitrary Settings Update to Stored XSS via CSRFEPSS 0.4%CVE-2022-1913Add Post URL <= 2.1.0 - Arbitrary Settings Update to Stored XSS via CSRFEPSS 0.4%CVE-2022-1793Private Files <= 0.40 - Protection Disabling via CSRFEPSS 0.4%CVE-2022-1885Cimy Header Image Rotator <= 6.1.1 - Arbitrary Settings Update via CSRFEPSS 0.4%CVE-2021-24466Verse-O-Matic <= 4.1.1 - CSRF to Stored XSSEPSS 0.4%CVE-2022-1845WP Post Styling < 1.3.1 - Multiple CSRFEPSS 0.4%CVE-2022-1846Tiny Contact Form <= 0.7 - Arbitrary Settings Update via CSRFEPSS 0.4%CVE-2021-24434Glass <= 1.3.2 - CSRF to Stored Cross-Site Scripting (XSS)EPSS 0.4%CVE-2022-1895underConstruction < 1.20 - Construction Mode Deactivation via CSRFEPSS 0.4%CVE-2022-1603Mail Subscribe List < 2.1.4 - Arbitrary Subscribed User Deletion via CSRFEPSS 0.4%CVE-2022-1712LiveSync for WordPress <= 1.0 - Arbitrary Settings Update via CSRFEPSS 0.4%