CVE-2014-5196: Improved User Search In Backend Project Improved User Search In Backend

Medium severity, CVSS 4.3. EPSS: 2.1% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in improved-user-search-in-backend.php in the backend in the Improved user search in backend plugin before 1.2.5 for WordPress allows remote attackers to hijack the authentication of administrators for requests that insert XSS sequences via the iusib_meta_fields parameter.

Affected products

Published 2014-08-12. Last modified 2026-06-17.