Weaknesses of type CWE-352

5,692 results
CVE-2025-2319HIGHEZ SQL Reports Shortcode Widget and DB Backup 4.11.13 - 5.25.08 - Cross-Site Request Forgery to Remote Code ExecutionEPSS 0.3%CVE-2024-39679MEDIUMWordPress Cooked Plugin - Cross-Site Request Forgery to Recipe Template ResetEPSS 0.3%CVE-2022-48309MEDIUMA CSRF vulnerability allows malicious websites to retrieve logs and technical support archives in Sophos Connect versions older than 2.2.90.EPSS 0.3%CVE-2024-39678MEDIUMWordPress Cooked Plugin - Cross-Site Request Forgery to Get Recipe IDsEPSS 0.3%CVE-2021-4407MEDIUMCustom Banners <= 3.2.2 - Cross-Site Request Forgery BypassEPSS 0.3%CVE-2024-26271HIGHCross-site request forgery (CSRF) vulnerability in the My Account widget in Liferay Portal 7.4.3.75 through 7.4.3.111, and Liferay DXP 2023.EPSS 0.3%CVE-2020-36750MEDIUMEWWW Image Optimizer <= 5.8.1 - Cross-Site Request Forgery BypassEPSS 0.3%CVE-2025-1643MEDIUMBenner ModernaNet SG_AlterarSenha cross-site request forgeryEPSS 0.3%CVE-2024-26272HIGHCross-site request forgery (CSRF) vulnerability in the content page editor in Liferay Portal 7.3.2 through 7.4.3.107, and Liferay DXP 2023.QEPSS 0.3%CVE-2022-2224MEDIUMGallery for Social Photo <= 1.0.0.27 - Cross-Site Request Forgery to Post DuplicationEPSS 0.3%CVE-2021-4408MEDIUMDW Question & Answer <= 1.5.8 - Cross-Site Request Forgery BypassEPSS 0.3%CVE-2023-0438MEDIUMCross-Site Request Forgery (CSRF) in modoboa/modoboaEPSS 0.3%CVE-2022-2223MEDIUMImage Slider <= 1.1.121 - Cross-Site Request Forgery to Post DuplicationEPSS 0.3%CVE-2021-4402MEDIUMMultiple Roles <= 1.3.1- Cross-Site Request Forgery BypassEPSS 0.3%CVE-2021-4410MEDIUMQtranslate Slug <= 1.1.18 - Cross-Site Request Forgery BypassEPSS 0.3%CVE-2021-4409MEDIUMWooCommerce Etsy Integration <= 3.3.1 - Cross-Site Request Forgery BypassEPSS 0.3%CVE-2024-26273HIGHCross-site request forgery (CSRF) vulnerability in the content page editor in Liferay Portal 7.4.0 through 7.4.3.103, and Liferay DXP 2023.QEPSS 0.3%CVE-2021-4412MEDIUMWP Prayer <= 1.6.5 - Cross-Site Request Forgery BypassEPSS 0.3%CVE-2024-37758HIGHImproper access control in the endpoint /RoleMenuMapping/AddRoleMenu of Digiteam v4.21.0.0 allows authenticated attackers to escalate privilEPSS 0.3%CVE-2023-26839MEDIUMA cross-site request forgery (CSRF) vulnerability in ChurchCRM v4.5.3 allows attackers to edit information for existing people on the site.EPSS 0.3%