PT-2025-33386 · Creativemindssolutions · Cm On Demand Search/Replace

Bao - Bluerock

·

Published

2025-08-14

·

Updated

2025-08-15

·

CVE-2025-54728

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions: CreativeMindsSolutions CM On Demand Search And Replace versions through 1.5.2
Description: A Cross-Site Request Forgery (CSRF) issue exists in CreativeMindsSolutions CM On Demand Search And Replace, allowing attackers to perform actions on behalf of authenticated users.
Recommendations: Update CreativeMindsSolutions CM On Demand Search And Replace to a version later than 1.5.2.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2025-54728

Affected Products

Cm On Demand Search/Replace