cleantalk
Vulnerabilities and Security Researches

WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts, CVE-2025-32280

CVE, Research URL

CVE-2025-32280

Published on
Apr 04, 2025
Research Description
WP Project Manager &#8211; Task, team, and project management plugin featuring kanban board and gantt charts [wedevs-project-manager] <= 2.6.22 (unfixed) CVE-2025-32280 [en] Cross-Site Request Forgery (CSRF) vulnerability in weDevs WP Project Manager allows Cross Site Request Forgery. This issue affects WP Project Manager: from n/a through 2.6.22.
Affected versions
Min -, max 2.6.22.
Status
vulnerable