Known vulnerabilities in the Wp Project Manager plugin
11 security advisories have been published for the Wp Project Manager plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- WP Project Manager - PHP Object Injection (CVE-2026-78262) CRITICAL
- Wp Project Manager - SQL Injection (CVE-2025-8994) MEDIUM
- Wp Project Manager - Cross-Site Scripting (XSS) (CVE-2025-2541) MEDIUM
- Wp Project Manager - Cross-Site Scripting (XSS) (CVE-2025-3100) MEDIUM
- Wp Project Manager - SQL Injection (CVE-2024-13500) MEDIUM
- Wp Project Manager - Denial of Service (CVE-2024-13752) MEDIUM
- Wp Project Manager - SQL Injection (CVE-2024-12195) MEDIUM
- Wp Project Manager - Information Disclosure (CVE-2024-10548) MEDIUM
- Wp Project Manager - Broken Access Control (CVE-2024-10520) MEDIUM
- Wp Project Manager - Security Vulnerability (CVE-2024-10174) HIGH
- Wp Project Manager - Privilege Escalation (CVE-2023-3636) HIGH