Security
Headlines
HeadlinesLatestCVEs

Tag

#csrf

CVE-2022-47159: WordPress Logaster Logo Generator plugin <= 1.3 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Logaster Logaster Logo Generator plugin <= 1.3 versions.

CVE
#csrf#vulnerability#wordpress#auth
CVE-2022-47135: WordPress Chronoforms plugin <= 7.0.9 - Cross Site Request Forgery (CSRF) - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in chronoengine.Com Chronoforms plugin <= 7.0.9 versions.

CVE-2022-42225: Multiple XSS

Jumpserver 2.10.0 <= version <= 2.26.0 contains multiple stored XSS vulnerabilities because of improper filtering of user input, which can execute any javascript under admin's permission.

CVE-2022-47448: WordPress xili-tidy-tags plugin <= 1.12.03 - Cross Site Request Forgery (CSRF) - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in dev.Xiligroup.Com - MS plugin <= 1.12.03 versions.

CVE-2022-47447: WordPress WP-Advanced-Search plugin <= 3.3.8 - Cross Site Request Forgery (CSRF) - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Mathieu Chartier WordPress WP-Advanced-Search plugin <= 3.3.8 versions.

CVE-2022-47446: WordPress Store Locator for WordPress with Google Maps – LotsOfLocales plugin <= 3.98.7 - Cross Site Request Forgery (CSRF) - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Viadat Creations Store Locator for WordPress with Google Maps – LotsOfLocales plugin <= 3.98.7 versions.

CVE-2022-47180: WordPress Kopa Framework plugin <= 1.3.5 - Cross Site Request Forgery (CSRF) - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Kopa Theme Kopa Framework plugin <= 1.3.5 versions.

CVE-2022-45364: WordPress Drag and Drop Multiple File Upload – Contact Form 7 plugin <= 1.3.6.5 - Multiple CSRF vulnerabilities - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload – Contact Form 7 plugin <= 1.3.6.5 versions.

CVE-2022-46794: WordPress WooCommerce Weight Based Shipping plugin <= 5.4.1 - Cross Site Request Forgery (CSRF) Vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in weightbasedshipping.Com WooCommerce Weight Based Shipping plugin <= 5.4.1 versions.

CVE-2022-46816: WordPress Booking Ultra Pro Appointments Booking Calendar Plugin plugin <= 1.1.4 - Cross Site Request Forgery (CSRF) - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Booking Ultra Pro Appointments Booking Calendar Plugin plugin <= 1.1.4 versions.