Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-352 (跨站请求伪造(CSRF)) — Vulnerability Class 4751

4751 vulnerabilities classified as CWE-352 (跨站请求伪造(CSRF)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-58847 WordPress WN Flipbox Pro Plugin <= 2.1 - Cross Site Request Forgery (CSRF) Vulnerability — WN Flipbox Pro 7.1 High2025-09-05
CVE-2025-58845 WordPress Bulk Watermark Plugin <= 1.6.10 - Cross Site Request Forgery (CSRF) Vulnerability — Bulk Watermark 7.1 High2025-09-05
CVE-2025-58844 WordPress Database to Excel Plugin <= 1.0 - Cross Site Request Forgery (CSRF) Vulnerability — Database to Excel 7.1 High2025-09-05
CVE-2025-58843 WordPress Auto Last Youtube Video Plugin <= 1.0.7 - Cross Site Request Forgery (CSRF) Vulnerability — Auto Last Youtube Video 7.1 High2025-09-05
CVE-2025-58833 WordPress Invelity MyGLS connect Plugin <= 1.1.1 - Cross Site Request Forgery (CSRF) Vulnerability — Invelity MyGLS connect 8.8 High2025-09-05
CVE-2025-58831 WordPress Parallax Scrolling Enllax.js Plugin <= 0.0.6 - Cross Site Request Forgery (CSRF) Vulnerability — Parallax Scrolling Enllax.js 4.3 Medium2025-09-05
CVE-2025-58818 WordPress Developer Tools Blocker Plugin <= 3.2.1 - Cross Site Request Forgery (CSRF) Vulnerability — Developer Tools Blocker 5.4 Medium2025-09-05
CVE-2025-58809 WordPress To Lead For Salesforce Plugin <= 2.7.3.9 - Cross Site Request Forgery (CSRF) Vulnerability — To Lead For Salesforce 7.1 High2025-09-05
CVE-2025-58807 WordPress Purge Varnish Cache Plugin <= 2.6 - Cross Site Request Forgery (CSRF) Vulnerability — Purge Varnish Cache 7.1 High2025-09-05
CVE-2025-58806 WordPress WordPress Error Monitoring by Bugsnag Plugin <= 1.6.3 - Cross Site Request Forgery (CSRF) Vulnerability — WordPress Error Monitoring by Bugsnag 7.1 High2025-09-05
CVE-2025-58804 WordPress WooCommerce Single Page Checkout Plugin <= 1.2.7 - Cross Site Request Forgery (CSRF) Vulnerability — WooCommerce Single Page Checkout 4.3 Medium2025-09-05
CVE-2025-58801 WordPress Responder Plugin <= 4.3.8 - Cross Site Request Forgery (CSRF) Vulnerability — Responder 5.4 Medium2025-09-05
CVE-2025-58802 WordPress TrustMate.io – WooCommerce integration plugin <= 1.16.0 - Cross Site Request Forgery (CSRF) vulnerability — TrustMate.io – WooCommerce integration 4.3 Medium2025-09-05
CVE-2025-58800 WordPress WP Email Template plugin <= 2.8.6 - Cross Site Request Forgery (CSRF) vulnerability — WP Email Template 4.3 Medium2025-09-05
CVE-2025-58799 WordPress Custom WooCommerce Checkout Fields Editor Plugin <= 1.3.4 - Cross Site Request Forgery (CSRF) Vulnerability — Custom WooCommerce Checkout Fields Editor 4.3 Medium2025-09-05
CVE-2025-58798 WordPress BCM Duplicate Menu plugin <= 1.1.3 - Cross Site Request Forgery (CSRF) vulnerability — BCM Duplicate Menu 4.3 Medium2025-09-05
CVE-2025-58794 WordPress Notification for Telegram plugin <= 3.5.1 - Cross Site Request Forgery (CSRF) vulnerability — Notification for Telegram 4.3 Medium2025-09-05
CVE-2025-58792 WordPress Authors List plugin <= 2.0.6.2 - Cross Site Request Forgery (CSRF) vulnerability — Authors List 4.3 Medium2025-09-05
CVE-2025-9616 PopAd <= 1.0.4 - Cross-Site Request Forgery to Settings Update — PopAd 5.3 Medium2025-09-04
CVE-2025-20326 Cisco Unified Communications Manager Cross-Site Request Forgery Vulnerability — Cisco Unified Communications Manager 4.3 Medium2025-09-03
CVE-2025-58611 WordPress Tickera Plugin <= 3.5.5.6 - Cross Site Request Forgery (CSRF) Vulnerability — Tickera 4.3 Medium2025-09-03
CVE-2025-58272 NTT EAST Web Caster V130 跨站请求伪造漏洞 — Web Caster V130 4.3AIMediumAI2025-09-03
CVE-2025-0610 CSRF in Akinsoft's QR Menu — QR Menü 8.6 High2025-09-01
CVE-2025-9747 Koillection csrf_protection_controller.js cross-site request forgery — Koillection 4.3 Medium2025-08-31
CVE-2025-9618 Related Posts Lite <= 1.12 - Cross-Site Request Forgery — Related Posts Lite 4.3 Medium2025-08-30
CVE-2025-9374 Ultimate Tag Warrior Importer <= 0.2 - Cross-Site Request Forgery — Ultimate Tag Warrior Importer 4.3 Medium2025-08-29
CVE-2025-48363 WordPress Popup for CF7 with Sweet Alert plugin <= 1.6.5 - Cross Site Request Forgery (CSRF) vulnerability — Popup for CF7 with Sweet Alert 4.3 Medium2025-08-28
CVE-2025-48362 WordPress Hesabfa Accounting plugin <= 2.2.5 - Cross Site Request Forgery (CSRF) vulnerability — Hesabfa Accounting 5.4 Medium2025-08-28
CVE-2025-48359 WordPress ATT YouTube Widget plugin <= 1.0 - Cross Site Request Forgery (CSRF) to Stored XSS vulnerability — ATT YouTube Widget 7.1 High2025-08-28
CVE-2025-48357 WordPress Century ToolKit plugin <= 1.2.1 - Cross Site Request Forgery (CSRF) to Arbitrary Plugin Activation vulnerability — Century ToolKit 5.4 Medium2025-08-28

Vulnerabilities classified as CWE-352 (跨站请求伪造(CSRF)) represent 4751 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.