Access violation vulnerability in Projectopia – WordPress Project Management 5.1.16

The Projectopia plugin for WordPress, which helps manage projects, has a security issue that allows unauthorized users to take over an account and gain access to sensitive information. This can happen because the plugin does not check a user’s identity before allowing them to change their email address. Attackers could exploit this vulnerability to change an administrator’s email and then reset their password, giving them access to the account.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.