Cminds
24 known vulnerabilities
Top Products
The CM Tooltip Glossary WordPress plugin before 4.3.4 does not sanitise and escape some of its settings, which could all
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Answers cm-answers allows Cross Site Reques
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Ad Changer cm-ad-changer allows Cross Site
The CM Table Of Contents WordPress plugin before 1.2.4 does not have CSRF check when updating its settings, and is miss
The CM Table Of Contents WordPress plugin before 1.2.3 does not have CSRF check in place when resetting its settings, w
The CM Pop-Up Banners for WordPress plugin before 1.7.3 does not sanitise and escape some of its popup fields, which cou
The CM Popup Plugin for WordPress WordPress plugin before 1.6.6 does not sanitise and escape some of the campaign setti
The CM Email Registration Blacklist and Whitelist WordPress plugin before 1.4.9 does not have CSRF check when adding or
The CM WordPress Search And Replace Plugin WordPress plugin before 1.3.9 does not have CSRF checks in some places, which
The CM Download Manager WordPress plugin before 2.9.1 does not have CSRF checks in some places, which could allow attac
The CM Download Manager WordPress plugin before 2.9.0 does not have CSRF checks in some places, which could allow attac
The CM Download Manager WordPress plugin before 2.9.0 does not have CSRF checks in some places, which could allow attac
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CreativeMindsSolut
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM On Demand Search And Replace plugin <= 1.3.
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CreativeMindsSolutions CM On Demand Search And Replace
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in CreativeMindsSolutions CM Answers plugin <= 3.1.9 vers
The CM Download Manager WordPress plugin before 2.8.6 allows high privilege users such as admin to upload arbitrary file
The Video Lessons Manager WordPress plugin before 1.7.2 and Video Lessons Manager Pro WordPress plugin before 3.5.9 do n
The CM Tooltip Glossary WordPress plugin before 3.9.21 does not escape some glossary_tooltip shortcode attributes, which
Directory traversal in the CM Download Manager (aka cm-download-manager) plugin 2.7.0 for WordPress allows authorized us
Cross Site Scripting (XSS) vulnerability in the CM Download Manager (aka cm-download-manager) plugin 2.7.0 for WordPress
The cm-download-manager plugin before 2.8.0 for WordPress allows XSS.
Reflected XSS in wordpress plugin enhanced-tooltipglossary v3.2.8
Frequently Asked Questions
How many CVEs affect Cminds?
Cminds has 24 CVE records in our database, including 0 critical and 5 high severity vulnerabilities.
What are the most severe Cminds vulnerabilities?
Cminds has 0 critical severity (CVSS 9.0+) and 5 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Cminds vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Cminds products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Cminds Vulnerabilities
CyberStrike scans your infrastructure for Cminds vulnerabilities and provides real-time remediation guidance.
Get Started