Security
Headlines
HeadlinesLatestCVEs

Tag

#csrf

CVE-2023-33931: WordPress YouTube Playlist Player plugin <= 4.6.4 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Ciprian Popescu YouTube Playlist Player plugin <= 4.6.4 versions.

CVE
#csrf#vulnerability#wordpress#auth
CVE-2023-33315: WordPress Smart App Banner plugin <= 1.1.2 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Stephen Darlington, Wandle Software Limited Smart App Banner plugin <= 1.1.2 versions.

CVE-2023-33212: WordPress JetFormBuilder plugin <= 3.0.6 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Crocoblock JetFormBuilder — Dynamic Blocks Form Builder plugin <= 3.0.6 versions.

CVE-2023-2950: fix: bug fix (#6354) · openemr/openemr@abee8d2

Improper Authorization in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-2944: bug fix (#6267) · openemr/openemr@723ac5d

Improper Access Control in GitHub repository openemr/openemr prior to 7.0.1.

CVE-2023-25058: WordPress Schema – All In One Schema Rich Snippets plugin <= 1.6.5 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force Schema – All In One Schema Rich Snippets plugin <= 1.6.5 versions.

CVE-2023-25467: WordPress Resize at Upload Plus plugin <= 1.3 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Daniel Mores, A. Huizinga Resize at Upload Plus plugin <= 1.3 versions.

CVE-2023-32964: WordPress Better Notifications for WP plugin <= 1.9.2 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Made with Fuel Better Notifications for WP plugin <= 1.9.2 versions.