Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-352 (跨站请求伪造(CSRF)) — Vulnerability Class 4751

4751 vulnerabilities classified as CWE-352 (跨站请求伪造(CSRF)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-62113 WordPress Co-marquage service-public.fr plugin <= 0.5.77 - Cross Site Request Forgery (CSRF) vulnerability — Co-marquage service-public.fr 4.3 Medium2025-12-31
CVE-2025-62123 WordPress WP Gmail SMTP plugin <= 1.0.7 - Cross Site Request Forgery (CSRF) vulnerability — WP Gmail SMTP 4.3 Medium2025-12-31
CVE-2025-63040 WordPress Post Snippets plugin <= 4.0.11 - Cross Site Request Forgery (CSRF) vulnerability — Post Snippets 4.3 Medium2025-12-31
CVE-2025-59130 WordPress Appointify plugin <= 1.0.8 - Cross Site Request Forgery (CSRF) vulnerability — Appointify 4.3 Medium2025-12-31
CVE-2025-62133 WordPress FormFacade plugin <= 1.4.1 - Cross Site Request Forgery (CSRF) vulnerability — FormFacade 4.3 Medium2025-12-31
CVE-2025-63014 WordPress Gmedia Photo Gallery plugin <= 1.25.0 - Cross Site Request Forgery (CSRF) vulnerability — Gmedia Photo Gallery 4.3 Medium2025-12-31
CVE-2025-62089 WordPress Mergado Pack plugin <= 4.2.1 - Cross Site Request Forgery (CSRF) vulnerability — Mergado Pack 4.3 Medium2025-12-31
CVE-2025-62084 WordPress iNext Woo Pincode Checker plugin <= 2.3.1 - Cross Site Request Forgery (CSRF) vulnerability — iNext Woo Pincode Checker 4.3 Medium2025-12-31
CVE-2025-62148 WordPress Robots.txt rewrite plugin <= 1.6.1 - Cross Site Request Forgery (CSRF) vulnerability — Robots.txt rewrite 4.3 Medium2025-12-31
CVE-2025-62080 WordPress Live Shopping & Shoppable Videos For WooCommerce plugin <= 2.2.0 - Cross Site Request Forgery (CSRF) vulnerability — Live Shopping &amp; Shoppable Videos For WooCommerce 4.3 Medium2025-12-31
CVE-2025-62117 WordPress EasyIndex plugin <= 1.1.1704 - Cross Site Request Forgery (CSRF) vulnerability — EasyIndex 5.4 Medium2025-12-31
CVE-2025-62120 WordPress OpenHook plugin <= 4.3.1 - Cross Site Request Forgery (CSRF) vulnerability — OpenHook 5.4 Medium2025-12-31
CVE-2025-62134 WordPress Contact Form Widget plugin <= 1.5.1 - Cross Site Request Forgery (CSRF) vulnerability — Contact Form Widget 5.4 Medium2025-12-31
CVE-2025-49028 WordPress Zoho ZeptoMail plugin <= 3.3.1 - Cross Site Request Forgery (CSRF) to Stored XSS vulnerability — Zoho ZeptoMail 7.1 High2025-12-31
CVE-2025-62992 WordPress Everest Backup plugin <= 2.3.11 - Cross Site Request Forgery (CSRF) vulnerability — Everest Backup 6.5 Medium2025-12-31
CVE-2025-49342 WordPress Custom Style plugin <= 1.0 - Cross Site Request Forgery (CSRF) vulnerability — Custom Style 7.1 High2025-12-31
CVE-2025-49353 WordPress Noindex by Path plugin <= 1.0 - Cross Site Request Forgery (CSRF) vulnerability — Noindex by Path 7.1 High2025-12-31
CVE-2025-68885 WordPress Custom Post Status plugin <= 1.1.0 - Cross Site Request Forgery (CSRF) to Stored XSS vulnerability — Custom Post Status 7.1 High2025-12-31
CVE-2025-49354 WordPress Recent Posts From Each Category plugin <= 1.4 - Cross Site Request Forgery (CSRF) vulnerability — Recent Posts From Each Category 7.1 High2025-12-31
CVE-2025-49343 WordPress Social Profilr plugin <= 1.0 - Cross Site Request Forgery (CSRF) vulnerability — Social Profilr 7.1 High2025-12-31
CVE-2025-49344 WordPress SensitiveTagCloud plugin <= 1.4.1 - Cross Site Request Forgery (CSRF) vulnerability — SensitiveTagCloud 7.1 High2025-12-31
CVE-2025-49345 WordPress WP-EasyArchives plugin <= 3.1.2 - Cross Site Request Forgery (CSRF) vulnerability — WP-EasyArchives 7.1 High2025-12-31
CVE-2025-49346 WordPress Simple Archive Generator plugin <= 5.2 - Cross Site Request Forgery (CSRF) vulnerability — Simple Archive Generator 7.1 High2025-12-31
CVE-2025-59137 WordPress Behance Portfolio Manager plugin <= 1.7.5 - Cross Site Request Forgery (CSRF) vulnerability — Behance Portfolio Manager 7.1 High2025-12-31
CVE-2025-59131 WordPress WP-CalDav2ICS plugin <= 1.3.4 - Cross Site Request Forgery (CSRF) vulnerability — WP-CalDav2ICS 7.1 High2025-12-30
CVE-2022-50804 JM-DATA ONU JF511-TV 1.0.67 Cross-Site Request Forgery (CSRF) Vulnerability — JF511-TV 8.8 High2025-12-30
CVE-2025-52835 WordPress WING WordPress Migrator plugin <= 1.2.0 - Cross Site Request Forgery (CSRF) vulnerability — WING WordPress Migrator 9.6 Critical2025-12-30
CVE-2025-62112 WordPress Import into Easy Property Listings plugin <= 2.2.1 - Cross Site Request Forgery (CSRF) vulnerability — Import into Easy Property Listings 4.3 Medium2025-12-30
CVE-2025-69021 WordPress Popup box plugin <= 6.0.7 - Cross Site Request Forgery (CSRF) vulnerability — Popup box 5.4 Medium2025-12-30
CVE-2025-68998 WordPress Heateor Social Login plugin <= 1.1.39 - Cross Site Request Forgery (CSRF) vulnerability — Heateor Social Login 5.4 Medium2025-12-30

Vulnerabilities classified as CWE-352 (跨站请求伪造(CSRF)) represent 4751 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.