Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CreativeMindsSolutions CM On Demand Search And Replace plugin <= 1.3.0 versions.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-35543 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CreativeMindsSolutions CM On Demand Search And Replace plugin <= 1.3.0 versions. |
Fixes
Solution
Update to 1.3.1 or a higher version.
Workaround
No workaround given by the vendor.
References
History
Fri, 23 Jan 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cminds cm Search And Replace
|
|
| CPEs | cpe:2.3:a:cminds:cm_search_and_replace:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Cminds cm On Demand Search And Replace
|
Cminds cm Search And Replace
|
Wed, 25 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2024-09-25T14:39:30.385Z
Reserved: 2023-04-26T15:10:10.074Z
Link: CVE-2023-31228
Updated: 2024-08-02T14:53:30.697Z
Status : Analyzed
Published: 2023-08-18T13:15:09.743
Modified: 2026-01-23T02:39:47.917
Link: CVE-2023-31228
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD