Access violation vulnerability in WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts 2.6.13

A popular project management plugin for WordPress, called WP Project Manager, has a security vulnerability in all versions up to and including 2.6.13. This vulnerability allows hackers to pretend to be an administrator and gain access to all of the plugin’s REST routes. The issue is caused by a lack of validation on a key that is controlled by the user.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.