Description In phpMyFAQ before 2.9.9, there is Cross-Site Request Forgery (CSRF) in admin/stat.ratings.php. Remediation References CVE-2017-15730 Related Vulnerabilities Liferay DXP Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2022-26596) WordPress Plugin Social Share Icons & Social Share Buttons Security Bypass (3.0.2) WordPress Plugin Swift Landing Page Cross-Site Request Forgery (1.1) Atlassian Jira Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2018-13403) WordPress Plugin Theme My Login Local File Inclusion (6.3.9) Severity High Classification CVE-2017-15730 CWE-352 CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities