Code-projects
Code-projects Task Manager: vulnerabilidades y CVE
Code-projects Task Manager tiene 9 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses3
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-4004 | Media (6.5) | 0.45% | — | 21 mar 2026 | The Task Manager plugin for WordPress is vulnerable to arbitrary shortcode execution via the 'search' AJAX action in all versions up to, and including, 3.0.2. This is due to missing capability checks in the… |
| CVE-2026-2351 | Media (6.5) | 0.25% | — | 21 mar 2026 | The Task Manager plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 3.0.2 via the callback_get_text_from_url() function. This makes it possible for authenticated attackers,… |
| CVE-2025-60078 | Alta (7.5) | 0.46% | — | 18 dic 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Agence web Eoxia – Montpellier Task Manager task-manager allows PHP Local File Inclusion.This… |
| CVE-2024-11096 | Media (5.3) | 0.46% | — | 12 nov 2024 | A vulnerability, which was classified as critical, was found in code-projects Task Manager 1.0. This affects an unknown part of the file /newProject.php. The manipulation of the argument projectName leads to sql… |
| CVE-2024-25222 | Crítica (9.8) | 0.75% | — | 14 feb 2024 | Task Manager App v1.0 was discovered to contain a SQL injection vulnerability via the projectID parameter at /TaskManager/EditProject.php. |
| CVE-2024-25221 | Media (6.1) | 0.41% | — | 14 feb 2024 | A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Note Section parameter at /TaskManager/Tasks.php. |
| CVE-2024-25220 | Crítica (9.8) | 0.68% | — | 14 feb 2024 | Task Manager App v1.0 was discovered to contain a SQL injection vulnerability via the taskID parameter at /TaskManager/EditTask.php. |
| CVE-2024-25219 | Media (6.1) | 0.46% | — | 14 feb 2024 | A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Task Name parameter /TaskManager/Task.php. |
| CVE-2024-25218 | Media (6.1) | 0.41% | — | 14 feb 2024 | A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Project Name parameter /TaskManager/Projects.php. |
Otros productos de Code-projects
Exam Form Submission · 30Simple Laundry System · 26Patient Record Management System · 23Online Shoe Store · 21Inventory Management System · 21Library System · 20Blood Bank System · 17Employee Management System · 17Online Restaurant Management System · 14Pharmacy Management System · 14Simple Admin Panel · 14Vehicle Showroom Management System · 12