← Back
CWE-352

9,352 CVEs • Abstraction: Compound • Likelihood of Exploit: Medium

Cross-Site Request Forgery (CSRF)

The web application does not, or can not, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.

JSON object

Loading...

CVEs (9,352)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a department, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/reply-ticket.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to reply to any ticket, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to close any ticket, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/edit-category.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a category, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-categories.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a category via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/edit-article.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit an article, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/edit-template.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit an article template, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/edit-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a news article, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/edit-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a glossary term, given the id, via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-templates.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete an article template via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a department via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a department via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a ticket via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a news article via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a glossary term via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a comment via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/manage-articles.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete an article via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/add-field.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to create a custom field via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/ajax-hub.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to post a comment on any article via a crafted request.
1Chadhaajay
1Phpkb
Jun 17, 2026
Mar 12, 2020
N/A· v4
4.3 MEDIUM· v3
4.3 MEDIUM· v2
CSRF in admin/add-template.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a new article template via a crafted request.