Zephyr Project Manager Project

Zephyr Project Manager

3 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Published 29.12.2023 10:15:09
  • Last modified 21.11.2024 08:01:41

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Dylan James Zephyr Project Manager.This issue affects Zephyr Project Manager: from n/a through 3.3.9.

  • EPSS 0.05%
  • Published 19.06.2023 13:15:09
  • Last modified 21.11.2024 08:07:07

Cross-Site Request Forgery (CSRF) vulnerability in Dylan James Zephyr Project Manager plugin <= 3.3.93 versions.

  • EPSS 2.98%
  • Published 13.06.2022 13:15:13
  • Last modified 05.05.2025 17:17:36

The Zephyr Project Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘project’ parameter in versions up to, and including, 3.2.40 due to insufficient input sanitization and output escaping. This makes it possible fo...