Weaknesses of type CWE-352

5,692 results
CVE-2023-48060HIGHDreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/task/addEPSS 0.4%CVE-2022-45393LOWA cross-site request forgery (CSRF) vulnerability in Jenkins Delete log Plugin 1.0 and earlier allows attackers to delete build logs.EPSS 0.4%CVE-2022-2388WP Coder < 2.5.3 - Code Deletion via CSRFEPSS 0.4%CVE-2024-24336HIGHA multiple Cross-site scripting (XSS) vulnerability in the '/members/moremember.pl', and ‘/members/members-home.pl’ endpoints within Koha LiEPSS 0.4%CVE-2024-56116HIGHA Cross-Site Request Forgery vulnerability in Amiro.CMS before 7.8.4 allows remote attackers to create an administrator account.EPSS 0.4%CVE-2023-28674HIGHA cross-site request forgery (CSRF) vulnerability in Jenkins OctoPerf Load Testing Plugin Plugin 4.5.2 and earlier allows attackers to conneEPSS 0.4%CVE-2022-41236HIGHA cross-site request forgery (CSRF) vulnerability in Jenkins Security Inspector Plugin 117.v6eecc36919c2 and earlier allows attackers to repEPSS 0.4%CVE-2023-20011HIGHCisco Application Policy Infrastructure Controller and Cisco Cloud Network Controller Cross-Site Request Forgery VulnerabilityEPSS 0.4%CVE-2021-37198HIGHA vulnerability has been identified in COMOS V10.2 (All versions only if web components are used), COMOS V10.3 (All versions < V10.3.3.3 onlEPSS 0.4%CVE-2023-28671MEDIUMA cross-site request forgery (CSRF) vulnerability in Jenkins OctoPerf Load Testing Plugin Plugin 4.5.0 and earlier allows attackers to conneEPSS 0.4%CVE-2022-29431MEDIUMRemove CPT base <= 5.8 - CSRF leads to CPT base deletionEPSS 0.4%CVE-2022-45398MEDIUMA cross-site request forgery (CSRF) vulnerability in Jenkins Cluster Statistics Plugin 0.4.6 and earlier allows attackers to delete recordedEPSS 0.4%CVE-2012-10010MEDIUMBestWebSoft Contact Form contact_form.php cntctfrm_settings_page cross-site request forgeryEPSS 0.4%CVE-2015-10081MEDIUMarnoldle submitByMailPlugin edit_list.php cross-site request forgeryEPSS 0.4%CVE-2023-30901MEDIUMA vulnerability has been identified in SICAM P850 (7KG8500-0AA00-0AA0) (All versions < V3.11), SICAM P850 (7KG8500-0AA00-2AA0) (All versionsEPSS 0.4%CVE-2022-4564MEDIUMUniversity of Central Florida Materia API Controller api.php before cross-site request forgeryEPSS 0.4%CVE-2021-4417MEDIUMForminator – Contact Form, Payment Form & Custom Form Builder <= 1.13.4 - Cross-Site Request Forgery BypassEPSS 0.4%CVE-2015-10125MEDIUMWP Ultimate CSV Importer Plugin cross-site request forgeryEPSS 0.4%CVE-2024-2816MEDIUMTenda AC15 SysToolReboot fromSysToolReboot cross-site request forgeryEPSS 0.4%CVE-2020-7534HIGHA CWE-352: Cross-Site Request Forgery (CSRF) vulnerability exists on the web server used, that could cause a leak of sensitive data or unautEPSS 0.4%