The Find And Replace All Project maintains a text-processing utility focused on bulk string substitution, representing a narrowly scoped product with niche deployment. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Find And Replace All Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-2311MEDIUM The Find and Replace All WordPress plugin before 1.3 does not sanitize and escape some parameters from its setting page before outputting them back to the user, leading to a Reflec | Nov 28, 2022 | 6.1 | 22 | NO | NO |
CVE-2022-3850MEDIUM The Find and Replace All WordPress plugin before 1.3 does not have CSRF check when replacing string, which could allow attackers to make a logged admin replace arbitrary string in | Nov 28, 2022 | 4.3 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Find And Replace All Project.
Media articles that mention a CVE ID that affects a product developed by Find And Replace All Project — matched by CVE ID, not by vendor name.