Vulnerabilities (CVE)

Filtered by CWE-352
Total 6081 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-3976 1 Kimai 1 Kimai 2 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
kimai2 is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3963 1 Kimai 1 Kimai 2 2024-11-21 4.3 MEDIUM 4.3 MEDIUM
kimai2 is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3957 1 Kimai 1 Kimai 2 2024-11-21 4.3 MEDIUM 4.3 MEDIUM
kimai2 is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3944 1 Bookstackapp 1 Bookstack 2024-11-21 4.0 MEDIUM 6.8 MEDIUM
bookstack is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3932 1 Area17 1 Twill 2024-11-21 4.3 MEDIUM 4.3 MEDIUM
twill is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3931 1 Snipeitapp 1 Snipe-it 2024-11-21 4.3 MEDIUM 4.3 MEDIUM
snipe-it is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3921 1 Firefly-iii 1 Firefly Iii 2024-11-21 4.3 MEDIUM 4.3 MEDIUM
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3901 1 Firefly-iii 1 Firefly Iii 2024-11-21 6.8 MEDIUM 8.8 HIGH
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3900 1 Firefly-iii 1 Firefly Iii 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3858 1 Snipeitapp 1 Snipe-it 2024-11-21 6.8 MEDIUM 8.8 HIGH
snipe-it is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3819 1 Firefly-iii 1 Firefly Iii 2024-11-21 6.8 MEDIUM 8.8 HIGH
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3776 1 Showdoc 1 Showdoc 2024-11-21 5.8 MEDIUM 5.4 MEDIUM
showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3775 1 Showdoc 1 Showdoc 2024-11-21 5.8 MEDIUM 5.4 MEDIUM
showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3734 1 Yourls 1 Yourls 2024-11-21 6.8 MEDIUM 8.8 HIGH
yourls is vulnerable to Improper Restriction of Rendered UI Layers or Frames
CVE-2021-3730 1 Firefly-iii 1 Firefly Iii 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3729 1 Firefly-iii 1 Firefly Iii 2024-11-21 4.3 MEDIUM 4.3 MEDIUM
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3728 1 Firefly-iii 1 Firefly Iii 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3683 1 Showdoc 1 Showdoc 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3133 1 Sean-barton 1 Elementor Contact Form Db 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
The Elementor Contact Form DB plugin before 1.6 for WordPress allows CSRF via backend admin pages.
CVE-2021-39864 1 Adobe 2 Commerce, Magento Open Source 2024-11-21 4.3 MEDIUM 6.5 MEDIUM
Adobe Commerce versions 2.4.2-p2 (and earlier), 2.4.3 (and earlier) and 2.3.7p1 (and earlier) are affected by a cross-site request forgery (CSRF) vulnerability via a Wishlist Share Link. Successful exploitation could lead to unauthorized addition to customer cart by an unauthenticated attacker. Access to the admin console is not required for successful exploitation.