The facebook-by-weblizar plugin before 2.8.5 for WordPress has CSRF.

%d bloggers like this: