Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2025-46245
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Ad Changer cm-ad-changer allows Cross Site Request Forgery.This issue af…
Cm Ad Changer
2.0.6+
HIGH 8.8
CVE-2025-46246
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM Answers cm-answers allows Cross Site Request Forgery.This issue affects …
Cm Answers
3.3.4+
HIGH 8.1
CVE-2024-5167
The CM Email Registration Blacklist and Whitelist WordPress plugin before 1.4.9 does not have CSRF check when adding or deleting an item from the bla…
Cm E Mail Blacklist
1.4.9+
MEDIUM 6.5
CVE-2024-5028
The CM WordPress Search And Replace Plugin WordPress plugin before 1.3.9 does not have CSRF checks in some places, which could allow attackers to mak…
Cm Search And Replace
1.3.9+
HIGH 8.8
CVE-2024-1962
The CM Download Manager WordPress plugin before 2.9.1 does not have CSRF checks in some places, which could allow attackers to make logged in admins…
Cm Download Manager
2.9.1+
MEDIUM 6.8
CVE-2024-1231
The CM Download Manager WordPress plugin before 2.9.0 does not have CSRF checks in some places, which could allow attackers to make logged in admins…
Cm Download Manager
2.9.0+
HIGH 8.1
CVE-2023-30750
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CreativeMindsSolutions CM Popup Plugin for Word…
Cm Popup
1.6.0+
HIGH 8.8
CVE-2023-28749
Cross-Site Request Forgery (CSRF) vulnerability in CreativeMindsSolutions CM On Demand Search And Replace plugin <= 1.3.0 versions.
Cm Search And Replace
after 1.3.0
HIGH 7.2
CVE-2022-3076
The CM Download Manager WordPress plugin before 2.8.6 allows high privilege users such as admin to upload arbitrary files by setting the any extensio…
Cm Download Manager
2.8.6+
MEDIUM 5.4
CVE-2021-24678
The CM Tooltip Glossary WordPress plugin before 3.9.21 does not escape some glossary_tooltip shortcode attributes, which could allow users a role as …
Tooltip Glossary
3.9.21+
HIGH 8.1
CVE-2020-24146
Directory traversal in the CM Download Manager (aka cm-download-manager) plugin 2.7.0 for WordPress allows authorized users to delete arbitrary files…
Cm Download Manager
Mitigation only
MEDIUM 6.1
CVE-2020-24145
Cross Site Scripting (XSS) vulnerability in the CM Download Manager (aka cm-download-manager) plugin 2.7.0 for WordPress allows remote attackers to i…
Cm Download Manager
Mitigation only
MEDIUM 6.1
CVE-2020-27344
The cm-download-manager plugin before 2.8.0 for WordPress allows XSS.
Cm Download Manager
2.8.0+
MEDIUM 6.1
CVE-2016-1000132
Reflected XSS in wordpress plugin enhanced-tooltipglossary v3.2.8
Tooltip Glossary
after 3.2.8
MEDIUM 6.8
CVE-2014-9129
Cross-site request forgery (CSRF) vulnerability in the CreativeMinds CM Downloads Manager plugin before 2.0.7 for WordPress allows remote attackers t…
Cm Download Manager
after 2.0.6