• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-352

CVE-2022-0196

February 23, 2023 by

phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)

CVE-2022-0197

February 23, 2023 by

phoronix-test-suite is vulnerable to Cross-Site Request Forgery (CSRF)

CVE-2022-0199

February 23, 2023 by

The Coming soon and Maintenance mode WordPress plugin before 3.6.8 does not have CSRF check in its coming_soon_send_mail AJAX action, allowing attackers to make logged in admin to send arbitrary emails to all subscribed users via a CSRF attack

CVE-2022-0215

February 23, 2023 by

The Login/Signup Popup, Waitlist Woocommerce ( Back in stock notifier ), and Side Cart Woocommerce (Ajax) WordPress plugins by XootiX are vulnerable to Cross-Site Request Forgery via the save_settings function found in the ~/includes/xoo-framework/admin/class-xoo-admin-settings.php file which makes it possible for attackers to update arbitrary options on a site that can be used to create an administrative user account and grant full privileged access to a compromised site. This affects versions <= 2.2 in Login/Signup Popup, versions <= 2.5.1 in Waitlist Woocommerce ( Back in stock notifier ), and versions <= 2.0 in Side Cart Woocommerce (Ajax).

CVE-2022-0226

February 23, 2023 by

livehelperchat is vulnerable to Cross-Site Request Forgery (CSRF)

CVE-2022-0088

February 23, 2023 by

Cross-Site Request Forgery (CSRF) in GitHub repository yourls/yourls prior to 1.8.3.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 415
  • Go to page 416
  • Go to page 417
  • Go to page 418
  • Go to page 419
  • Interim pages omitted …
  • Go to page 424
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE