Security
Headlines
HeadlinesLatestCVEs

Tag

#wordpress

CVE-2023-25443: WordPress Button Generator plugin <= 2.3.5 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Button Generator – easily Button Builder plugin <= 2.3.5 versions.

CVE
#csrf#vulnerability#wordpress#auth
CVE-2023-23671: WordPress Layer Slider plugin <= 1.1.9.7 - Cross-Site Request Forgery (CSRF) - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Muneeb Layer Slider plugin <= 1.1.9.7 versions.

CVE-2023-36687: WordPress Menubar plugin <= 5.8.2 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Andrea Tarantini Menubar plugin <= 5.8.2 versions.

CVE-2023-36693: WordPress WP RSS Images plugin <= 1.1 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Alain Gonzalez WP RSS Images plugin <= 1.1 versions.

CVE-2023-37391: WordPress WordPress Mobile Pack plugin <= 3.4.1 - Broken Access Control Vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in WPMobilePack.Com WordPress Mobile Pack – Mobile Plugin for Progressive Web Apps & Hybrid Mobile Apps plugin <= 3.4.1 versions.

CVE-2023-34015: WordPress Advanced Flat rate shipping Woocommerce plugin <= 1.6.4.4 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in PI Websolution Conditional shipping & Advanced Flat rate shipping rates / Flexible shipping for WooCommerce shipping plugin <= 1.6.4.4 versions.

CVE-2023-36517: WordPress WP Abstracts plugin <= 2.6.2 - Cross Site Request Forgery (CSRF) vulnerability - Patchstack

Cross-Site Request Forgery (CSRF) vulnerability in Kevon Adonis WP Abstracts plugin <= 2.6.2 versions.