Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 21 Oct 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Creativemindssolutions
Creativemindssolutions cm Registration Wordpress Wordpress wordpress |
|
| Vendors & Products |
Creativemindssolutions
Creativemindssolutions cm Registration Wordpress Wordpress wordpress |
Tue, 14 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 11 Oct 2025 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The CM Registration – Tailored tool for seamless login and invitation-based registrations plugin for WordPress is vulnerable to Open Redirect in all versions up to, and including, 2.5.6. This is due to insufficient validation on the redirect url supplied via the 'redirect_url' parameter. This makes it possible for unauthenticated attackers to redirect users to potentially malicious sites if they can successfully trick them into performing an action. | |
| Title | CM Registration – Tailored tool for seamless login and invitation-based registrations <= 2.5.6 - Open Redirect | |
| Weaknesses | CWE-601 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2025-10-14T14:11:07.569Z
Reserved: 2025-09-29T16:52:35.968Z
Link: CVE-2025-11167
Updated: 2025-10-14T13:30:23.862Z
Status : Awaiting Analysis
Published: 2025-10-11T09:15:31.997
Modified: 2025-10-14T19:36:59.730
Link: CVE-2025-11167
No data.
OpenCVE Enrichment
Updated: 2025-10-21T13:12:29Z