Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Dhakal_Ananda

#15301of 53,635
17.6Total CVSS
Vulnerabilities · 2
High
2
PT-2023-13994
8.8
2023-05-22
Thomas Belser · Asgaros Forum · CVE-2022-41608
**Name of the Vulnerable Software and Affected Versions** Thomas Belser Asgaros Forum plugin versions <= 2.2.0 **Description** The issue is related to a Cross-Site Request Forgery (CSRF) vulnerability. This type of vulnerability allows an attacker to trick a user into performing unintended actions on a web application that the user is authenticated to. **Recommendations** For versions <= 2.2.0, update to a version higher than 2.2.0 to resolve the issue. As a temporary workaround, consider implementing additional CSRF protection measures, such as token-based validation, to minimize the risk of exploitation.
PT-2022-25273
8.8
2022-11-17
WordPress · Wpforo Forum · CVE-2022-40192
**Name of the Vulnerable Software and Affected Versions** wpForo Forum plugin versions prior to 2.0.9 **Description** The issue is related to a Cross-Site Request Forgery (CSRF) vulnerability. This type of vulnerability allows an attacker to trick a user into performing unintended actions on a web application that the user is authenticated to. **Recommendations** For versions prior to 2.0.9, update to version 2.0.9 or later to resolve the issue.