cleantalk
Vulnerabilities and Security Researches

Portfolio and Projects, CVE-2023-39995

CVE, Research URL

CVE-2023-39995

Published on
Dec 13, 2024
Research Description
Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Portfolio and Projects allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Portfolio and Projects: from n/a through 1.3.7.
Affected versions
max 1.3.8.
Status
vulnerable