Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Group: languages Tag: cwe-352 Clear
ID Title
CVE-2026-81733 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-81733)
vulnerability in csrf (CVE-2026-81733). Risk of unauthorized operations or information disclosure.
CVE-2026-80210 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-80210)
vulnerability in csrf (CVE-2026-80210). Data can be tampered with by attackers.
CVE-2026-57944 Cross-Site Request Forgery (CSRF) in CVE-2026-57944 (CVE-2026-57944)
vulnerability in CVE-2026-57944 (CVE-2026-57944). Risk of unauthorized operations or information disclosure.
CVE-2026-58001 Cross-Site Request Forgery (CSRF) in CVE-2026-58001 (CVE-2026-58001)
vulnerability in CVE-2026-58001 (CVE-2026-58001). Data can be tampered with by attackers.
CVE-2026-58003 Cross-Site Request Forgery (CSRF) in CVE-2026-58003 (CVE-2026-58003)
vulnerability in CVE-2026-58003 (CVE-2026-58003). Confidential information can be exposed externally.
CVE-2026-67358 Cross-Site Request Forgery (CSRF) in c (CVE-2026-67358)
vulnerability in c (CVE-2026-67358). Risk of unauthorized operations or information disclosure.
CVE-2026-77391 Cross-Site Request Forgery (CSRF) in CVE-2026-77391 (CVE-2026-77391)
vulnerability in CVE-2026-77391 (CVE-2026-77391). Risk of unauthorized operations or information disclosure.
CVE-2026-71123 Privilege Escalation in c (CVE-2026-71123)
vulnerability in c (CVE-2026-71123). Risk of unauthorized operations or information disclosure.
CVE-2026-55593 Cross-Site Request Forgery (CSRF) in froxlor/froxlor (CVE-2026-55593)
vulnerability in froxlor/froxlor (CVE-2026-55593). Data can be tampered with by attackers. Exploitable via ``allowed_from``. Mitigation: upgrade to `2.3.8` or later.
CVE-2026-67921 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-67921)
vulnerability in csrf (CVE-2026-67921). Confidential information can be exposed externally.
CVE-2026-45129 Cross-Site Request Forgery (CSRF) in CVE-2026-45129 (CVE-2026-45129)
vulnerability in CVE-2026-45129 (CVE-2026-45129). Risk of unauthorized operations or information disclosure.
CVE-2026-45128 Cross-Site Request Forgery (CSRF) in CVE-2026-45128 (CVE-2026-45128)
vulnerability in CVE-2026-45128 (CVE-2026-45128). Risk of unauthorized operations or information disclosure.
CVE-2026-45127 Cross-Site Request Forgery (CSRF) in CVE-2026-45127 (CVE-2026-45127)
vulnerability in CVE-2026-45127 (CVE-2026-45127). Risk of unauthorized operations or information disclosure.
CVE-2026-45126 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-45126)
vulnerability in csrf (CVE-2026-45126). Risk of unauthorized operations or information disclosure.
CVE-2026-45119 Cross-Site Request Forgery (CSRF) in CVE-2026-45119 (CVE-2026-45119)
vulnerability in CVE-2026-45119 (CVE-2026-45119). Risk of unauthorized operations or information disclosure.
CVE-2026-73847 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73847)
vulnerability in csrf (CVE-2026-73847). Confidential information can be exposed externally.
CVE-2026-19786 Cross-Site Request Forgery (CSRF) in CVE-2026-19786 (CVE-2026-19786)
vulnerability in CVE-2026-19786 (CVE-2026-19786). Risk of unauthorized operations or information disclosure.
CVE-2026-73481 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73481)
vulnerability in csrf (CVE-2026-73481). Risk of unauthorized operations or information disclosure.
CVE-2026-73482 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-73482)
vulnerability in csrf (CVE-2026-73482). Data can be tampered with by attackers.
CVE-2026-67990 Cross-Site Request Forgery (CSRF) in rails (CVE-2026-67990)
vulnerability in rails (CVE-2026-67990). Risk of unauthorized operations or information disclosure.
CVE-2025-62318 Cross-Site Request Forgery (CSRF) in CVE-2025-62318 (CVE-2025-62318)
vulnerability in CVE-2025-62318 (CVE-2025-62318). Risk of unauthorized operations or information disclosure.
CVE-2026-73222 Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds t...
Claude Code Templates is a CLI tool for configuring and monitoring Claude Code. Prior to 1.29.4, the Claude Code Studio server launched by the --studio option in cli-tool/src/sandbox-server.js binds to all interfaces on port 3444, permits cross-origin requests, and requires no authentication. The PO...
CVE-2026-19418 Vulnerability in CVE-2026-19418 (CVE-2026-19418)
vulnerability in CVE-2026-19418 (CVE-2026-19418). Risk of unauthorized operations or information disclosure.
CVE-2026-71273 Cross-Site Request Forgery (CSRF) in c (CVE-2026-71273)
vulnerability in c (CVE-2026-71273). Data can be tampered with by attackers. Exploitable via ``web_admin_password_enabled``.
CVE-2026-7444 The Search Analytics for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
The Search Analytics for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in...
CVE-2026-70376 Cross-Site Request Forgery (CSRF) in csrf (CVE-2026-70376)
vulnerability in csrf (CVE-2026-70376). Successful exploitation can lead to full system takeover. Exploitable via `Referer header`.
CVE-2026-69093 Cross-Site Request Forgery (CSRF) in CVE-2026-69093 (CVE-2026-69093)
vulnerability in CVE-2026-69093 (CVE-2026-69093). Risk of unauthorized operations or information disclosure.
CVE-2025-67651 Cross-Site Request Forgery (CSRF) in csrf (CVE-2025-67651)
vulnerability in csrf (CVE-2025-67651). Risk of unauthorized operations or information disclosure.
CVE-2026-66416 Cross-Site Request Forgery (CSRF) in laravel (CVE-2026-66416)
vulnerability in laravel (CVE-2026-66416). Successful exploitation can lead to full system takeover.
CVE-2026-14239 Cross-Site Scripting (XSS) in wordpress (CVE-2026-14239)
cross-site scripting in wordpress (CVE-2026-14239). Risk of unauthorized operations or information disclosure.
CVE-2026-62563 Vulnerability in c (CVE-2026-62563)
vulnerability in c (CVE-2026-62563). Risk of unauthorized operations or information disclosure.
CVE-2026-62487 Cross-Site Request Forgery (CSRF) in c (CVE-2026-62487)
vulnerability in c (CVE-2026-62487). Risk of unauthorized operations or information disclosure.
CVE-2026-62443 Cross-Site Request Forgery (CSRF) in c (CVE-2026-62443)
vulnerability in c (CVE-2026-62443). Data can be tampered with by attackers.
CVE-2026-61253 Cross-Site Request Forgery (CSRF) in c (CVE-2026-61253)
vulnerability in c (CVE-2026-61253). Risk of unauthorized operations or information disclosure.
CVE-2026-61217 Vulnerability in c (CVE-2026-61217)
vulnerability in c (CVE-2026-61217). Confidential information can be exposed externally.
CVE-2026-61204 Privilege Escalation in c (CVE-2026-61204)
vulnerability in c (CVE-2026-61204). Successful exploitation can lead to full system takeover.
CVE-2026-61132 Cross-Site Request Forgery (CSRF) in c (CVE-2026-61132)
vulnerability in c (CVE-2026-61132). Confidential information can be exposed externally.
CVE-2026-61101 Vulnerability in c (CVE-2026-61101)
vulnerability in c (CVE-2026-61101). Confidential information can be exposed externally.
CVE-2026-61097 Vulnerability in c (CVE-2026-61097)
vulnerability in c (CVE-2026-61097). Confidential information can be exposed externally.
CVE-2026-61082 Information Disclosure in c (CVE-2026-61082)
vulnerability in c (CVE-2026-61082). Confidential information can be exposed externally.
CVE-2026-60957 Privilege Escalation in c (CVE-2026-60957)
vulnerability in c (CVE-2026-60957). Risk of unauthorized operations or information disclosure.
CVE-2026-60962 Vulnerability in c (CVE-2026-60962)
vulnerability in c (CVE-2026-60962). Risk of unauthorized operations or information disclosure.
CVE-2026-60911 Vulnerability in c (CVE-2026-60911)
vulnerability in c (CVE-2026-60911). Risk of unauthorized operations or information disclosure.
CVE-2026-60886 Information Disclosure in c (CVE-2026-60886)
vulnerability in c (CVE-2026-60886). Confidential information can be exposed externally.
CVE-2026-60842 Vulnerability in c (CVE-2026-60842)
vulnerability in c (CVE-2026-60842). Risk of unauthorized operations or information disclosure.
CVE-2026-60685 Vulnerability in c (CVE-2026-60685)
vulnerability in c (CVE-2026-60685). Risk of unauthorized operations or information disclosure.
CVE-2026-60664 Cross-Site Scripting (XSS) in c (CVE-2026-60664)
cross-site scripting in c (CVE-2026-60664). Successful exploitation can lead to full system takeover.
CVE-2026-60658 Cross-Site Request Forgery (CSRF) in c (CVE-2026-60658)
vulnerability in c (CVE-2026-60658). Successful exploitation can lead to full system takeover.
CVE-2026-60643 Cross-Site Request Forgery (CSRF) in c (CVE-2026-60643)
vulnerability in c (CVE-2026-60643). Successful exploitation can lead to full system takeover.
CVE-2026-60646 Cross-Site Scripting (XSS) in c (CVE-2026-60646)
cross-site scripting in c (CVE-2026-60646). Successful exploitation can lead to full system takeover.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →