Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-352 (跨站请求伪造(CSRF)) — Vulnerability Class 4751

4751 vulnerabilities classified as CWE-352 (跨站请求伪造(CSRF)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-26926 WordPress Booknetic plugin <= 4.0.9 - Cross Site Request Forgery (CSRF) vulnerability — Booknetic 4.3 Medium2025-02-25
CVE-2024-13494 WordPress File Upload <= 4.25.2 - Cross-Site Request Forgery in wfu_file_details — Iptanus File Upload 4.3 Medium2025-02-25
CVE-2025-1644 Benner ModernaNet SG_Gravar cross-site request forgery — ModernaNet 4.3 Medium2025-02-25
CVE-2025-1643 Benner ModernaNet SG_AlterarSenha cross-site request forgery — ModernaNet 4.3 Medium2025-02-25
CVE-2025-27357 WordPress Önceki Yazı Link Plugin <= 1.3 - Cross Site Request Forgery (CSRF) vulnerability — Önceki Yazı Link 4.3 Medium2025-02-24
CVE-2025-27355 WordPress Woocommerce – Loi Hamon Plugin <= 1.1.0 - CSRF to Stored XSS vulnerability — Woocommerce – Loi Hamon 7.1 High2025-02-24
CVE-2025-27353 WordPress Namaste! LMS Plugin <= 2.6.5 - Cross Site Request Forgery (CSRF) vulnerability — Namaste! LMS 4.3 Medium2025-02-24
CVE-2025-27344 WordPress Phee's LinkPreview Plugin <= 1.6.7 - Cross Site Request Forgery (CSRF) vulnerability — Phee's LinkPreview 4.3 Medium2025-02-24
CVE-2025-27342 WordPress WooCommerce Recargo de Equivalencia Plugin <= 1.6.24 - Cross Site Request Forgery (CSRF) vulnerability — WooCommerce Recargo de Equivalencia 4.3 Medium2025-02-24
CVE-2025-27340 WordPress F12-Profiler Plugin <= 1.3.9 - Cross Site Request Forgery (CSRF) vulnerability — F12-Profiler 5.4 Medium2025-02-24
CVE-2025-27339 WordPress Minimum Password Strength Plugin <= 1.2.0 - Cross Site Request Forgery (CSRF) vulnerability — Minimum Password Strength 4.3 Medium2025-02-24
CVE-2025-27336 WordPress Just Variables Plugin <= 1.2.3 - Cross Site Request Forgery (CSRF) vulnerability — Just Variables 4.3 Medium2025-02-24
CVE-2025-27335 WordPress Auto Tag Links Plugin <= 1.0.13 - Cross Site Request Forgery (CSRF) vulnerability — Auto Tag Links 4.3 Medium2025-02-24
CVE-2025-27332 WordPress Smart Maintenance & Countdown Plugin <= 1.2 - CSRF to Stored XSS vulnerability — Smart Maintenance & Countdown 7.1 High2025-02-24
CVE-2025-27328 WordPress WP-PostRatings Cheater Plugin <= 1.5 - Cross Site Request Forgery (CSRF) vulnerability — WP-PostRatings Cheater 4.3 Medium2025-02-24
CVE-2025-27321 WordPress Blightly Explorer plugin <= 2.3.0 - CSRF to Stored XSS vulnerability — Blightly Explorer 7.1 High2025-02-24
CVE-2025-27318 WordPress Simple Google Sitemap Plugin <= 1.6 - Cross Site Request Forgery (CSRF) vulnerability — Simple Google Sitemap 4.3 Medium2025-02-24
CVE-2025-27317 WordPress RAYS Grid Plugin <= 1.3.1 - Cross Site Request Forgery (CSRF) vulnerability — RAYS Grid 4.3 Medium2025-02-24
CVE-2025-27316 WordPress JPG, PNG Compression and Optimization Plugin <= 1.7.35 - Cross Site Request Forgery (CSRF) vulnerability — JPG, PNG Compression and Optimization 4.3 Medium2025-02-24
CVE-2025-27315 WordPress All-In-One Cufon Plugin <= 1.3.0 - Cross Site Request Forgery (CSRF) vulnerability — All-In-One Cufon 4.3 Medium2025-02-24
CVE-2025-27311 WordPress Bulk Content Creator Plugin <= 1.2.1 - Cross Site Request Forgery (CSRF) vulnerability — Bulk Content Creator 4.3 Medium2025-02-24
CVE-2025-27298 WordPress WP Video Posts plugin <= 3.5.1 - CSRF to Remote Code Execution (RCE) vulnerability — WP Video Posts 8.3 High2025-02-24
CVE-2025-27290 WordPress Select Erima Zarinpal Donate Plugin <= 1.0 - Cross Site Request Forgery (CSRF) vulnerability — Erima Zarinpal Donate 4.3 Medium2025-02-24
CVE-2025-27277 WordPress Add Linked Images To Gallery plugin <= 1.4 - CSRF to Stored XSS vulnerability — Add Linked Images To Gallery 7.1 High2025-02-24
CVE-2025-27276 WordPress Photo Gallery ( Responsive ) plugin <= 4.0 - CSRF to Privilege Escalation vulnerability — Photo Gallery ( Responsive ) 8.8 High2025-02-24
CVE-2025-27012 WordPress A1POST.BG Shipping for Woo plugin <= 1.5 - CSRF to Privilege Escalation vulnerability — A1POST.BG Shipping for Woo 8.8 High2025-02-22
CVE-2025-1557 OFCMS cross-site request forgery — OFCMS 4.3 Medium2025-02-22
CVE-2024-13883 WPUpper Share Buttons <= 3.51 - Cross-Site Request Forgery to Custom CSS Update — WPUpper Share Buttons 4.3 Medium2025-02-21
CVE-2024-7141 CSRF in Gliffy — Gliffy Online 8.8 -2025-02-20
CVE-2024-49779 IBM OpenPages cross-site request forgery — OpenPages with Watson 4.3 Medium2025-02-20

Vulnerabilities classified as CWE-352 (跨站请求伪造(CSRF)) represent 4751 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.