Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Dhakal_Ananda

#20121of 56,330
14.2Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2023-13994
5.4
2023-05-22
Thomas Belser · Asgaros Forum · CVE-2022-41608
**Name of the Vulnerable Software and Affected Versions** Thomas Belser Asgaros Forum plugin versions <= 2.2.0 **Description** The issue is related to a Cross-Site Request Forgery (CSRF) vulnerability. This type of vulnerability allows an attacker to trick a user into performing unintended actions on a web application that the user is authenticated to. **Recommendations** For versions <= 2.2.0, update to a version higher than 2.2.0 to resolve the issue. As a temporary workaround, consider implementing additional CSRF protection measures, such as token-based validation, to minimize the risk of exploitation.
PT-2022-25273
8.8
2022-11-17
WordPress · Wpforo Forum · CVE-2022-40192
**Name of the Vulnerable Software and Affected Versions** wpForo Forum plugin versions prior to 2.0.9 **Description** The issue is related to a Cross-Site Request Forgery (CSRF) vulnerability. This type of vulnerability allows an attacker to trick a user into performing unintended actions on a web application that the user is authenticated to. **Recommendations** For versions prior to 2.0.9, update to version 2.0.9 or later to resolve the issue.