Total
6075 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-46193 | 1 Internetmarketingninjas | 1 Internal Link Building | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Internet Marketing Ninjas Internal Link Building plugin <= 1.2.3 versions. | |||||
CVE-2023-46191 | 1 Underdock | 1 Open Graph Metabox | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Niels van Renselaar Open Graph Metabox plugin <= 1.4.4 versions. | |||||
CVE-2023-46190 | 1 Novo-media | 1 Novo-map\ | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Novo-media Novo-Map : your WP posts on custom google maps plugin <= 1.1.2 versions. | |||||
CVE-2023-46189 | 1 Xtendify | 1 Simple Calendar | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Simple Calendar – Google Calendar Plugin <= 3.2.5 versions. | |||||
CVE-2023-46152 | 1 Pluginus | 1 Wolf - Wordpress Posts Bulk Editor And Products Manager Professional | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in realmag777 WOLF – WordPress Posts Bulk Editor and Manager Professional plugin <= 1.0.7.1 versions. | |||||
CVE-2023-46151 | 1 Awesometogi | 1 Product Category Tree | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in AWESOME TOGI Product Category Tree plugin <= 2.5 versions. | |||||
CVE-2023-46150 | 1 Wpmilitary | 1 Wp Radio | 2024-11-21 | N/A | 5.4 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in WP Military WP Radio plugin <= 3.1.9 versions. | |||||
CVE-2023-46095 | 1 Chetangole | 1 Smooth Scroll Links | 2024-11-21 | N/A | 5.4 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Chetan Gole Smooth Scroll Links [SSL] plugin <= 1.1.0 versions. | |||||
CVE-2023-46089 | 1 Userback | 1 Userback | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Lee Le @ Userback Userback plugin <= 1.0.13 versions. | |||||
CVE-2023-46087 | 1 Mahlamusa | 1 Who Hit The Page Hit Counter | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Mahlamusa Who Hit The Page – Hit Counter plugin <= 1.4.14.3 versions. | |||||
CVE-2023-46085 | 1 Wpmet | 1 Wp Ultimate Review | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Wpmet Wp Ultimate Review plugin <= 2.2.4 versions. | |||||
CVE-2023-46078 | 1 Pluginever | 1 Wc Serial Numbers | 2024-11-21 | N/A | 5.4 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in PluginEver WC Serial Numbers plugin <= 1.6.3 versions. | |||||
CVE-2023-46067 | 1 Qwerty23 | 1 Rocket Font | 2024-11-21 | N/A | 4.3 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in Qwerty23 Rocket Font plugin <= 1.2.3 versions. | |||||
CVE-2023-45992 | 1 Commscope | 1 Ruckus Cloudpath Enrollment System | 2024-11-21 | N/A | 9.6 CRITICAL |
A vulnerability in the web-based interface of the RUCKUS Cloudpath product on version 5.12 build 5538 or before to could allow a remote, unauthenticated attacker to execute persistent XSS and CSRF attacks against a user of the admin management interface. A successful attack, combined with a certain admin activity, could allow the attacker to gain full admin privileges on the exploited system. | |||||
CVE-2023-45907 | 1 Dreamer Cms Project | 1 Dreamer Cms | 2024-11-21 | N/A | 8.8 HIGH |
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/variable/delete. | |||||
CVE-2023-45906 | 1 Dreamer Cms Project | 1 Dreamer Cms | 2024-11-21 | N/A | 8.8 HIGH |
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/user/add. | |||||
CVE-2023-45905 | 1 Dreamer Cms Project | 1 Dreamer Cms | 2024-11-21 | N/A | 8.8 HIGH |
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/variable/add. | |||||
CVE-2023-45904 | 1 Dreamer Cms Project | 1 Dreamer Cms | 2024-11-21 | N/A | 8.8 HIGH |
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /variable/update. | |||||
CVE-2023-45903 | 1 Dreamer Cms Project | 1 Dreamer Cms | 2024-11-21 | N/A | 8.8 HIGH |
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/label/delete. | |||||
CVE-2023-45902 | 1 Dreamer Cms Project | 1 Dreamer Cms | 2024-11-21 | N/A | 8.8 HIGH |
Dreamer CMS v4.1.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/attachment/delete. |