https://owasp.org/www-community/attacks/csrf
Cross Site Request Forgery (CSRF) | OWASP Foundation
Cross Site Request Forgery (CSRF) on the main website for The OWASP Foundation. OWASP is a nonprofit foundation that works to improve the security of software.
cross site request forgerycsrfowaspfoundation
https://www.canadiansexresearchforum.com/
Canadian Sex Research Forum (CSRF)
The primary objective of the CSRF is to encourage and support interdisciplinary research in the area of sexuality and sexual health.
canadian sex research forumcsrf
https://advisories.gitlab.com/composer/wwbn/avideo/GHSA-ffw8-fwxp-h64w/
WWBN AVideo has Multiple CSRF Vulnerabilities in Admin JSON Endpoints (Category CRUD, Plugin Update...
GHSA-ffw8-fwxp-h64w WWBN AVideo has Multiple CSRF Vulnerabilities in Admin JSON Endpoints (Category CRUD, Plugin Update Script): Three admin-only JSON...
https://www.playframework.com/documentation/2.4.x/api/scala/play/filters/csrf/CSRF$$JavaCSRFErrorHandlerAdapter.html
JavaCSRFErrorHandlerAdapter - play.filters.csrf.CSRF.JavaCSRFErrorHandlerAdapter
JavaCSRFErrorHandlerAdapter - play.filters.csrf.CSRF.JavaCSRFErrorHandlerAdapter
playfilterscsrf
https://advisories.dxw.com/advisories/csrfxss-vulnerability-in-private-only-could-allow-an-attacker-to-do-almost-anything-an-admin-user-can/
CSRF/XSS vulnerability in Private Only could allow an attacker to do almost anything an admin user...
dxw advisory: CSRF/XSS vulnerability in Private Only could allow an attacker to do almost anything an admin user can (reported) - July 9, 2015
https://www.sentinelone.com/vulnerability-database/cve-2025-1764/
CVE-2025-1764: LoginPress WordPress Plugin CSRF Vulnerability
CVE-2025-1764 is a CSRF vulnerability in LoginPress WordPress plugin. Learn about its impact, affected versions, and mitigation methods.
wordpress plugincveloginpresscsrfvulnerability
https://cxsecurity.com/issue/WLB-2014090091
WordPress Login Widget With Shortcode 3.1.1 CSRF / XSS - CXSecurity.com
Tom Adams has realised a new security note WordPress Login Widget With Shortcode 3.1.1 CSRF / XSS
wordpress loginwidgetshortcode
https://app-attack-matrix.com/techniques/Payload%20Execution/Request%20Forgery/subtechniques/CSRF/
Cross-Site Request Forgery (CSRF) - Application Security Tactics & Techniques Matrix
cross site request forgeryapplication securitycsrftacticstechniques
https://advisories.gitlab.com/nuget/umbracocms.core/CVE-2020-7210/
Cross-Site Request Forgery (CSRF) | GitLab Advisory Database (GLAD)
CVE-2020-7210 Cross-Site Request Forgery (CSRF): Umbraco CMS 8.2.2 allows CSRF to enable/disable or delete user accounts.
cross site request forgerycsrfgitlabadvisorydatabase
https://csrf.net/tag/new-jersey/
New Jersey Archives - CSRF - Cushing's Support & Research Foundation
new jerseysupport researcharchivescsrfcushing
https://www.viking.com.tw/nl/product/CSRF0102FTDP22R6.html
Metaalfilm hoge frequentie MELF weerstand (CSRF-serie CSRF0102FTDP22R6)Fabrikanten - Viking
Gevestigd in Taiwan, Viking Tech Corporation is een van de belangrijkste Metaalfilm hoge frequentie MELF weerstand (CSRF-serie CSRF0102FTDP22R6) fabrikanten...
hogefrequentieweerstandcsrfserie
https://advisories.gitlab.com/maven/org.xwiki.platform/xwiki-platform-scheduler-ui/CVE-2024-31985/
XWiki Platform CSRF in the job scheduler | GitLab Advisory Database (GLAD)
CVE-2024-31985 XWiki Platform CSRF in the job scheduler: It is possible to schedule/trigger/unschedule existing jobs by having an admin visit the Job Scheduler...
in thejob schedulerxwikiplatformcsrf
https://www.playframework.com/documentation/2.5.13/api/scala/play/filters/csrf/CSRFAction.html
CSRFAction - play.filters.csrf.CSRFAction
CSRFAction - play.filters.csrf.CSRFAction
playfilterscsrf
https://www.sentinelone.com/vulnerability-database/cve-2025-23977/
CVE-2025-23977: Post Carousel Slider CSRF Vulnerability
CVE-2025-23977 is a CSRF vulnerability in Post Carousel Slider plugin. Learn about its impact, affected versions, and mitigation methods.
post carouselcveslidercsrfvulnerability
https://www.rndialogue.eu/tag/csrf/
csrf - RND
csrfrnd
https://vulntitan.com/vulnerabilities/26002
CVE-2023-23706 miniOrange Social Login and CSRF Fixed in 7.5.15 | VulnTitan
CVE-2023-23706 Cross-Site Request Forgery in Plugin miniOrange Social Login and Register (Discord, Google, Twitter,; affects Versions up to 7.5.14; fixed.
https://cvefeed.io/vuln/detail/CVE-2010-5315
CVE-2010-5315 - BEdita CSRF Vulnerability
May 6, 2026 - Multiple cross-site request forgery (CSRF) vulnerabilities in BEdita before 3.1 allow remote attackers to hijack the authentication of administrators for...
cvecsrfvulnerability
https://www.sentinelone.com/vulnerability-database/cve-2025-23848/
CVE-2025-23848: Hotspots Analytics CSRF Vulnerability
CVE-2025-23848 is a CSRF vulnerability in Hotspots Analytics plugin. Learn about its impact, affected versions, and mitigation methods.
cvehotspotsanalyticscsrfvulnerability
https://patchstack.com/database/wordpress/plugin/aruba-hispeed-cache/vulnerability/wordpress-aruba-hispeed-cache-plugin-3-0-4-cross-site-request-forgery-to-plugin-settings-reset-vulnerability
Cross Site Request Forgery (CSRF) in WordPress Aruba HiSpeed Cache Plugin - Patchstack
Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues.
cross site request forgery
https://www.sentinelone.com/vulnerability-database/cve-2025-48353/
CVE-2025-48353: Clickbank Plugin CSRF Vulnerability
CVE-2025-48353 is a CSRF vulnerability in Clickbank WordPress Plugin (Niche Storefront). Learn about its impact, affected versions, and mitigation methods.
cveclickbankplugincsrfvulnerability
https://advisories.gitlab.com/maven/org.jenkins-ci.plugins/codedx/CVE-2023-2631/
Cross-Site Request Forgery (CSRF) | GitLab Advisory Database (GLAD)
CVE-2023-2631 Cross-Site Request Forgery (CSRF): A missing permission check in Jenkins Code Dx Plugin 3.1.0 and earlier allows attackers with Overall/Read...
cross site request forgerycsrfgitlabadvisorydatabase
https://cvefeed.io/vuln/detail/CVE-2010-5293
CVE-2010-5293 - "WordPress Trackback Pingback CSRF"
Apr 29, 2026 - wp-includes/comment.php in WordPress before 3.0.2 does not properly whitelist trackbacks and pingbacks in the blogroll, which allows remote attackers to bypass...
cvewordpresstrackbackpingbackcsrf
https://docs.spring.io/spring-security/site/docs/4.2.12.RELEASE/apidocs/org/springframework/security/messaging/web/csrf/package-tree.html
org.springframework.security.messaging.web.csrf Class Hierarchy (Spring Security 4.2.12.RELEASE API)
https://security.snyk.io/vuln/SNYK-PHP-THORSTENPHPMYFAQ-72051
Cross-Site Request Forgery (CSRF) in thorsten/phpmyfaq | CVE-2017-15735 | Snyk
High severity (8.8) Cross-Site Request Forgery (CSRF) in thorsten/phpmyfaq | CVE-2017-15735
cross site request forgery
https://auth-wiki.logto.io/csrf
What is Cross-site request forgery (CSRF)? · Auth Wiki
Cross-site request forgery (CSRF) is an attack that deceives users into executing unwanted actions on a web application in which they are authenticated. It is...
cross site request forgerywhat iscsrfauthwiki
https://peiunitedway.com/community-services-recovery-fund/latest/no/18
CSRF/FRSC - United Way of PEI
The United Way of PEI works with Islanders for Islanders. Through partnerships with local community charitable organizations, our goal is to create a province...
united waycsrffrscpei
https://www.viking.com.tw/nl/product/CSRF0102FTDP14R3.html
Metaalfilm hoge frequentie MELF weerstand (CSRF-serie CSRF0102FTDP14R3)Fabrikanten - Viking
Gevestigd in Taiwan, Viking Tech Corporation is een van de belangrijkste Metaalfilm hoge frequentie MELF weerstand (CSRF-serie CSRF0102FTDP14R3) fabrikanten...
hogefrequentieweerstandcsrfserie
https://cvefeed.io/vuln/detail/CVE-2014-9398
CVE-2014-9398 - Twitter LiveBlog CSRF Vulnerability
May 6, 2026 - Cross-site request forgery (CSRF) vulnerability in the Twitter LiveBlog plugin 1.1.2 and earlier for WordPress allows remote attackers to hijack the...
cvetwitterliveblogcsrfvulnerability
https://thesheryar.com/how-to-audit-a-wordpress-plugin-for-xss-csrf-and-privilege-escalation-vulnerabilities/
How to audit a WordPress plugin for XSS, CSRF, and privilege escalation vulnerabilities? -...
May 5, 2026 - So, you want to audit a WordPress plugin for some serious security flaws like XSS, CSRF, and privilege escalation. Good call. In a nutshell, you're going to be...
how to audit
https://dtang.dev/protecting-web-applications-against-cross-site-request-forgery-attacks/
Protecting Web Applications Against CSRF Attacks | David Tang
This post is a brief introduction to protecting web applications against Cross-Site Request Forgery Attacks (CSRF).
web applicationsprotectingcsrfattacksdavid
https://advisories.gitlab.com/maven/com.jfinal/jfinal/CVE-2023-49374/
Cross-Site Request Forgery (CSRF) | GitLab Advisory Database (GLAD)
CVE-2023-49374 Cross-Site Request Forgery (CSRF): JFinalCMS v5.0.0 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via...
cross site request forgerycsrfgitlabadvisorydatabase
https://www.sentinelone.com/vulnerability-database/cve-2025-23806/
CVE-2025-23806: Ultimate Subscribe CSRF Vulnerability
CVE-2025-23806 is a CSRF vulnerability in Ultimate Subscribe plugin. Learn about its impact, affected versions, and mitigation methods.
cveultimatesubscribecsrfvulnerability
https://advisories.gitlab.com/maven/org.jenkins-ci.main/jenkins-core/CVE-2025-27624/
Jenkins cross-site request forgery (CSRF) vulnerability | GitLab Advisory Database (GLAD)
CVE-2025-27624 Jenkins cross-site request forgery (CSRF) vulnerability: Jenkins 2.499 and earlier, LTS 2.492.1 and earlier does not require POST requests for...
cross site request forgeryjenkins
https://www.phpclasses.org/discuss/package/11005/
Discussion forum of package Anti-CSRF - PHP Classes
discussion forumpackageanticsrfphp
https://keepgrowing.in/tag/invalid-csrf-token/
Invalid CSRF token Archives - keep_growing
invalidcsrftokenarchiveskeep
https://scrivocodice.it/tag/csrf/
Tag: Csrf | Scrivocodice
Articoli, guide e approfondimenti tecnici del blog di Scrivocodice collegati al tema Csrf e ai contenuti correlati.
tagcsrf
https://csrf.net/doctors-answers/age-replacement-dose/
Age and Replacement Dose - CSRF - Cushing's Support & Research Foundation
Jun 13, 2016 - Question: I have been on permanent replacement hydrocortisone for many years. Is there a need to increase or decrease my replacement dose as I age? Answer:...
s supportagereplacementdosecsrf
https://vibecode.care/article/security/csrf/
CSRF | VibeCode Care
Jan 3, 2026 - VibeCode tools, knowledge base and checklists for modern developers
csrfvibecodecare
https://portal.semsec.org/courses/eth-101-ethical-hacking-foundation/lectures/48173183
Clickjacking vs CSRF | Semicolon Security
clickjackingvscsrfsemicolonsecurity
https://csrf.net/patient-stories/barb-g/
Barb G., Transsphenoidal Pituitary Surgery - CSRF - Cushing's Support & Research Foundation
Aug 11, 2022 - On a Monday in early 2011 I took prednisone to relieve pain in my knees. Tuesday, I went to get my haircut, and Wednesday I looked in the mirror to check out...
pituitary surgerysupport researchbarb
https://www.playframework.com/documentation/ja/2.2.x/api/java/play/filters/csrf/package-tree.html
play.filters.csrf Class Hierarchy (playframework)
class hierarchyplayfilterscsrf
https://api.remix.run/api/remix/csrf-middleware/function/csrf/
csrf | Remix API Documentation
csrfremixapidocumentation
https://lore.proxmox.com/pbs-devel/20260407135714.490747-7-s.sterz@proxmox.com/
[PATCH proxmox-backup 06/10] backup-manager cli: `cert update` can create auth and csrf key -...
https://cxsecurity.com/issue/WLB-2016040038
Asbru Web Content Management System 9.2.7 CSRF / XSS / Traversal - CXSecurity.com
Gjoko 'LiquidWorm' Krstic has realised a new security note Asbru Web Content Management System 9.2.7 CSRF / XSS / Traversal
web content management system
https://lore.proxmox.com/yew-devel/DF0BZCBPNRO1.LVCIIMF4NK9K@proxmox.com/T/
[yew-devel] [PATCH yew-comp] http wasm client: load csrf token from global Proxmox object
https://www.sentinelone.com/vulnerability-database/cve-2025-31613/
CVE-2025-31613: AB Google Map Travel CSRF Vulnerability
CVE-2025-31613 is a Cross-Site Request Forgery vulnerability in AB Google Map Travel. Learn about its impact, affected versions, and mitigation methods.
google mapcveabtravelcsrf
https://advisories.gitlab.com/maven/org.jenkins-ci.plugins/teamconcert/CVE-2019-16565/
Cross-Site Request Forgery (CSRF) | GitLab Advisory Database (GLAD)
CVE-2019-16565 Cross-Site Request Forgery (CSRF): A cross-site request forgery vulnerability in Jenkins Team Concert Plugin 1.3.0 and earlier allows attackers...
cross site request forgerycsrfgitlabadvisorydatabase
https://ttxmonitor.com/tag/csrf/
csrf - My Blog
csrfblog
https://www.pluginvulnerabilities.com/2019/07/31/there-is-a-csrf-vulnerability-in-a-wordpress-plugin-with-80000-installs-developed-by-one-of-the-six-people-running-the-plugin-directory/
There is a CSRF Vulnerability in a WordPress Plugin with 80,000+ Installs Developed by One of The...
https://devhub.checkmarx.com/cve-details/cve-2017-3877/
Cross-Site Request Forgery (CSRF) - CVE-2017-3877 - DevHub
May 9, 2023 - A vulnerability in the web framework of Cisco Unified Communications Manager (CallManager) could allow an unauthenticated, remote attacker to conduct a...
cross site request forgerycsrfcvedevhub
https://www.sentinelone.com/vulnerability-database/cve-2025-23702/
CVE-2025-23702: Anonymize Links CSRF Vulnerability
CVE-2025-23702 is a CSRF vulnerability in Anonymize Links plugin. Learn about its impact, affected versions, and mitigation methods.
cveanonymizelinkscsrfvulnerability
https://www.mediawiki.org/wiki/Topic:Plwsfxv66v4bha98
CSRF != XSS on User talk:P858snake/Archive 1
csrfxssusertalkarchive
https://cvefeed.io/vuln/detail/CVE-2012-4893
CVE-2012-4893 - Webmin CSRF vulnerabilities in File/Show
Apr 29, 2026 - Multiple cross-site request forgery (CSRF) vulnerabilities in file/show.cgi in Webmin 1.590 and earlier allow remote attackers to hijack the authentication of...
cvewebmincsrfvulnerabilitiesfile
https://www.sentinelone.com/vulnerability-database/cve-2025-28891/
CVE-2025-28891: Price-Calc CSRF Vulnerability
CVE-2025-28891 is a CSRF vulnerability in Price-Calc plugin. Learn about its impact, affected versions, and mitigation methods to secure your system.
cvepricecalccsrfvulnerability
https://ursb.me/posts/csrf/
前端安全 | CSRF 的攻击手段与防范 | Airing
csrfairing
https://vulntitan.com/vulnerabilities/4733132
CVE-2025-62107 Login | Login Page | Login Logo CSRF CVSS 4.3 | VulnTitan
CVE-2025-62107 Cross-Site Request Forgery in Plugin Login | Login Page | Login Logo | Rename Login Page | Custom Login; affects Versions up to 1.1.7; no.
login pagecve
https://michalszalkowski.com/pentesting-web/vulnerabilities/cross-site-request-forgery-CSRF/
Cross Site Request Forgery (CSRF) - MichalSzalkowski.com
cross site request forgerycsrf
https://www.sentinelone.com/vulnerability-database/cve-2025-24562/
CVE-2025-24562: KBucket CSRF & Stored XSS Vulnerability
CVE-2025-24562 is a CSRF vulnerability in Optimal Access KBucket that enables stored XSS. Learn about its impact, affected versions, and mitigation methods.
stored xsscvecsrfvulnerability
https://www.sentinelone.com/vulnerability-database/cve-2025-52781/
CVE-2025-52781: TinyNav CSRF and Stored XSS Vulnerability
CVE-2025-52781 is a CSRF vulnerability in Beee TinyNav plugin that enables stored XSS attacks. Learn about its impact, affected versions, and mitigation...
stored xsscvecsrfvulnerability
https://dblp.uni-trier.de/rec/journals/corr/abs-1708-08786.html
dblp: Deemon: Detecting CSRF with Dynamic Analysis and Property Graphs.
May 12, 2026 - Bibliographic details on Deemon: Detecting CSRF with Dynamic Analysis and Property Graphs.
dynamic analysisdblpdetectingcsrfproperty
https://cvefeed.io/vuln/detail/CVE-2012-5387
CVE-2012-5387 - WordPress White Label CMS Plugin CSRF
Apr 29, 2026 - Cross-site request forgery (CSRF) vulnerability in wlcms-plugin.php in the White Label CMS plugin before 1.5.1 for WordPress allows remote attackers to hijack...
wordpress white labelcms plugincvecsrf
https://pickerlab.net/2025/02/22/security-attack-techniques-you-need-to-know-for-the-ipa-fe-and-ap-exams/csrf-2/
CSRF - pickerLab
csrf
https://kempenfeltplayers.com/local-organization-receives-funding-through-government-of-canadas-community-services-recovery-fund/csrf_unilingual_logo_en_grayscale_cmyk/
CSRF_Unilingual_logo_EN_Grayscale_CMYK - Kempenfelt Community Players
csrflogoengrayscalecmyk
https://www.playframework.com/documentation/2.2.3/api/scala/play/filters/csrf/CSRF$$Token$.html
Token - play.filters.csrf.CSRF.Token
Token - play.filters.csrf.CSRF.Token
tokenplayfilterscsrf
https://labs.integrity.pt/advisories/cve-2022-36968/index.html
CVE-2022-36968 - Multiple CSRF on WS_FTP lead to RCE | INTEGRITY Labs
https://help.klocwork.com/2025.3/en-us/reference/sv.csrf.get.htm
SV.CSRF.GET
svcsrfget
https://csrf.net/tag/medications/
Medications Archives - CSRF - Cushing's Support & Research Foundation
s supportmedicationsarchivescsrfcushing
https://www.playframework.com/documentation/2.2.3/api/scala/play/filters/csrf/package.html
csrf - play.filters.csrf
csrf - play.filters.csrf
csrfplayfilters
https://cvefeed.io/vuln/detail/CVE-2019-4742
CVE-2019-4742 - IBM Financial Transaction Manager CSRF (Cross-Site Request Forgery)
Nov 21, 2024 - IBM Financial Transaction Manager 3.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious...
financial transaction
https://www.intigriti.com/researchers/blog/bug-bytes/bug-bytes-34-challenge-winner-bounty-economy-and-csrf-bible
Bug Bytes #34 - Challenge Winner, Bounty Economy and CSRF bible
Bug Bytes is a weekly newsletter curated by members of the bug bounty community. The first series are curated by Mariem, better known as PentesterLand. Every...
bug byteschallengewinnerbountyeconomy
https://www.dotnetfunda.com/interviews/show/7230/what-is-cross-site-request-forgery-csrf-in-web-application
What is cross site request forgery (CSRF) in web a ... - DotNetFunda.com
Cross Site Request Forgery (CSRF) is a type of attack on the web application or on the website where a malicious user can insert or update data on behalf of
cross site request forgerywhat is
https://shibboleth.atlassian.net/wiki/spaces/DEV/pages/1178763480/CSRF+Mitigation+Options
CSRF Mitigation Options - Development Center - Confluence
development centercsrfmitigationoptionsconfluence
https://bun.sh/docs/runtime/csrf
CSRF Protection - Bun
Generate and verify CSRF tokens with Bun's built-in API
csrf protectionbun
https://devhub.checkmarx.com/cve-details/cve-2012-3532/
Cross-Site Request Forgery (CSRF) - CVE-2012-3532 - DevHub
Cross-site request forgery (CSRF) vulnerability in the GateIn Portal component in JBoss Enterprise Portal Platform 5.2.2 and earlier allows remote attackers to...
cross site request forgerycsrfcvedevhub
https://docs.zendframework.com/zend-expressive-csrf/
zend-expressive-csrf - zend-expressive-csrf - Zend Framework Docs
CSRF protection for PSR-7 applications using zend-expressive-session
zendexpressivecsrfframeworkdocs
https://webglossary.info/terms/csrf/
CSRF · WebGlossary.info · Uncover Your Unknowns in Web Development
in webcsrfinfouncoverunknowns
https://docs.spring.io/spring-security/site/docs/5.6.3/api/org/springframework/security/web/csrf/package-summary.html
org.springframework.security.web.csrf (spring-security-docs 5.6.3 API)
springframeworksecuritywebcsrf
https://gwtnews.blogspot.com/2010/11/re-how-to-prevent-csrfxsrf-when-using.html
Google Web Toolkit: Re: How to prevent CSRF/XSRF when using RequestFactory
Hi Daniel, I haven't tested it yet, but I believe you can extend DefaultRequestTransport as discussed in this thread to set a request header...
google web toolkit
https://www.django-rest-framework.org/topics/ajax-csrf-cors/
AJAX, CSRF & CORS - Django REST framework
Django REST framework - Web APIs for Django
ajaxcsrfcorsdjangorest
https://ranakhalil.com/courses/xss/lectures/52315071
Lab #16 Exploiting XSS to perform CSRF | Rana Khalil's Academy
Learn how to find, exploit and defend against XSS Vulnerabilities.
labexploitingxss
https://community.conpresso4.de/viewtopic.php?f=17&t=4505&start=15
CPO 4.1.5: CSRF check failed - Seite 2 - ConPresso4 Community
cpocsrf
https://devhub.checkmarx.com/cve-details/cve-2020-36504/
Cross-Site Request Forgery (CSRF) - CVE-2020-36504 - DevHub
May 9, 2023 - The WP-Pro-Quiz WordPress plugin through 0.37 does not have CSRF check in place when deleting a quiz, which could allow an attacker to make a logged in admin...
cross site request forgerycsrfcvedevhub
https://dblp.org/rec/journals/corr/abs-1708-08786.html
dblp: Deemon: Detecting CSRF with Dynamic Analysis and Property Graphs.
May 23, 2026 - Bibliographic details on Deemon: Detecting CSRF with Dynamic Analysis and Property Graphs.
dynamic analysisdblpdetectingcsrfproperty
https://cvefeed.io/vuln/detail/CVE-2013-6192
CVE-2013-6192 - HP Operations Orchestration CSRF Vulnerability
Apr 29, 2026 - Cross-site request forgery (CSRF) vulnerability in HP Operations Orchestration before 9 allows remote attackers to hijack the authentication of unspecified...
cvehpoperationsorchestrationcsrf
https://mail.python.org/pipermail/mailman-users/2012-January/072819.html
[Mailman-Users] CSRF prevention in mailman3
csrf preventionmailmanusers
https://browsehappy.pl/bezpieczenstwo/atak-csrf-cross-site-request-forgery-na-czym-polega-i-jak-sie-przed-nim-chronic/
Atak CSRF (Cross-Site Request Forgery) – na czym polega i jak się przed nim chronić?
May 6, 2026 - Atak CSRF (Cross-Site Request Forgery) polega na wymuszeniu na zalogowanym użytkowniku wykonania niechcianej akcji w aplikacji internetowej, w której jest on...
https://www.miggo.io/vulnerability-database/cve/CVE-2023-49382
CVE-2023-49382: JFinalCMS Admin Div Delete CSRF | Miggo
JFinalCMS Cross-Site Request Forgery in the admin panel forces authenticated users to delete site layout elements via a forged request to /admin/div/delete.
cveadmindivdeletecsrf
https://vulntitan.com/vulnerabilities/3078
CVE-2019-5971 Attendance Manager CSRF Fixed in 0.5.7 | VulnTitan
CVE-2019-5971 Cross-Site Request Forgery in Plugin Attendance Manager; affects Versions up to 0.5.6; fixed in 0.5.7; CVSS 8.8 high severity.
attendance manager
https://advisories.gitlab.com/maven/org.jenkins-ci.plugins/testquality-updater/CVE-2023-24452/
Cross-Site Request Forgery (CSRF) | GitLab Advisory Database (GLAD)
CVE-2023-24452 Cross-Site Request Forgery (CSRF): A cross-site request forgery (CSRF) vulnerability in Jenkins TestQuality Updater Plugin 1.3 and earlier...
cross site request forgerycsrfgitlabadvisorydatabase
https://security.snyk.io/vuln/SNYK-PHP-THORSTENPHPMYFAQ-72056
Cross-Site Request Forgery (CSRF) in thorsten/phpmyfaq | CVE-2017-15808 | Snyk
High severity (8.8) Cross-Site Request Forgery (CSRF) in thorsten/phpmyfaq | CVE-2017-15808
cross site request forgery
https://advisories.gitlab.com/composer/wwbn/avideo/CVE-2026-40925/
WWBN AVideo has CSRF in configurationUpdate.json.php Enables Full Site Configuration Takeover...
CVE-2026-40925 WWBN AVideo has CSRF in configurationUpdate.json.php Enables Full Site Configuration Takeover Including Encoder URL and SMTP Credentials:...
https://experienceleague.adobe.com/en/docs/experience-manager-dispatcher/using/configuring/configuring-dispatcher-to-prevent-csrf
Configuring Adobe Experience Manager Dispatcher to Prevent CSRF Attacks | Adobe Experience Manager
Learn how to configure the Adobe Experience Manager Dispatcher to prevent Cross-Site Request Forgery attacks.
adobe experience managerconfiguringdispatcherpreventcsrf
https://www.codecademy.com/learn/defending-express-applications-from-sql-injection-xss-csrf-attacks/modules/defensive-coding-in-javascript/cheatsheet
Defending Node Applications from SQL Injection, XSS, & CSRF Attacks: Defensive Coding in JavaScript...
https://www.pluginvulnerabilities.com/2019/08/09/cross-site-request-forgery-csrf-cross-site-scripting-xss-vulnerability-in-social-likebox-feed/
Cross-Site Request Forgery (CSRF)/Cross-Site Scripting (XSS) Vulnerability in Social LikeBox & Feed...
cross site request forgery
https://www.playframework.com/documentation/2.5.13/api/scala/play/filters/csrf/CSRFConfig.html
CSRFConfig - play.filters.csrf.CSRFConfig
CSRFConfig - play.filters.csrf.CSRFConfig
playfilterscsrf
https://cvefeed.io/vuln/detail/CVE-2022-0914
CVE-2022-0914 - Export All URLs 4.3 - Private/Draft Post/Page Title Disclosure via CSRF
Nov 21, 2024 - The Export All URLs WordPress plugin before 4.3 does not have CSRF in place when exporting data, which could allow attackers to make a logged in admin export...
https://advisories.gitlab.com/maven/org.jenkins-ci.plugins/matlab/CVE-2023-49655/
Cross-Site Request Forgery (CSRF) | GitLab Advisory Database (GLAD)
CVE-2023-49655 Cross-Site Request Forgery (CSRF): A cross-site request forgery (CSRF) vulnerability in Jenkins MATLAB Plugin 2.11.0 and earlier allows...
cross site request forgerycsrfgitlabadvisorydatabase
https://csrf1.lab.hackintheclass.org/
CSRF level 1
csrflevel
https://www.djangosnippets.org/snippets/2036/
djangosnippets: csrf_token for mako
csrftokenmako
https://symfony.com/doc/8.1/security/csrf.html
How to Implement CSRF Protection (Symfony 8.1 Docs)
CSRF, or Cross-site request forgery, is a type of attack where a malicious actor tricks a user into performing actions on a web application without their...
how to implementcsrf protectionsymfonydocs