| CVE-2024-12926 | Codezips Project Management System advanced.php sql injection | Codezips | Project Management System | Medium | 6.3 | 2024-12-25 20:00:15 | Deep Dive |
| CVE-2024-10548 | WP Project Manager <= 2.6.15 - Authenticated (Subscriber+) Sensitive Information Exposure via Project Task List REST API | wedevs | Project Manager – AI Powered Project Management, Task Management, Kanban Board & Time Tracker | Medium | 6.5 | 2024-12-19 01:45:14 | Deep Dive |
| CVE-2024-12231 | CodeZips Project Management System index.php sql injection | CodeZips | Project Management System | High | 7.3 | 2024-12-05 16:00:18 | Deep Dive |
| CVE-2024-10520 | WP Project Manager <= 2.6.14 - Missing Authorization to Project Milestone and Task Creation/Deletion | wedevs | Project Manager – AI Powered Project Management, Task Management, Kanban Board & Time Tracker | Medium | 5.3 | 2024-11-20 11:33:11 | Deep Dive |
| CVE-2024-10174 | WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts <= 2.6.13 - Insecure Direct Object Reference to Unauthenticated Authorization Bypass | wedevs | Project Manager – AI Powered Project Management, Task Management, Kanban Board & Time Tracker | High | 7.3 | 2024-11-13 03:20:08 | Deep Dive |
| CVE-2024-10735 | Project Worlds Life Insurance Management System editNominee.php sql injection | Project Worlds | Life Insurance Management System | Medium | 6.3 | 2024-11-03 14:00:07 | Deep Dive |
| CVE-2024-10734 | Project Worlds Life Insurance Management System editPayment.php sql injection | Project Worlds | Life Insurance Management System | Medium | 6.3 | 2024-11-03 13:00:08 | Deep Dive |
| CVE-2024-10609 | itsourcecode Tailoring Management System Project typeadd.php sql injection | itsourcecode | Tailoring Management System Project | Medium | 6.3 | 2024-11-01 01:00:10 | Deep Dive |
| CVE-2024-7621 | Visual Website Collaboration, Feedback & Project Management – Atarim <= 4.0.2 - Missing Authorization to Authenticated (Subscriber+) Settings Update | wpfeedback | Atarim – Visual Feedback, Review & AI Collaboration | Medium | 5.4 | 2024-08-10 02:01:22 | Deep Dive |
| CVE-2024-2793 | Visual Website Collaboration, Feedback & Project Management – Atarim <= 3.30 - Unauthenticated Stored Cross-Site Scripting | wpfeedback | Atarim – Visual Feedback, Review & AI Collaboration | High | 7.2 | 2024-05-31 04:31:43 | Deep Dive |
| CVE-2024-5519 | ItsourceCode Learning Management System Project In PHP login.php sql injection | ItsourceCode | Learning Management System Project In PHP | High | 7.3 | 2024-05-30 16:00:05 | Deep Dive |
| CVE-2024-2038 | Visual Website Collaboration, Feedback & Project Management – Atarim <= 3.22.6 - Hardcoded Credentials | wpfeedback | Atarim – Visual Feedback, Review & AI Collaboration | High | 7.5 | 2024-05-23 06:46:03 | Deep Dive |
| CVE-2024-21095 | Oracle Construction and Engineering Suite 安全漏洞 | Oracle Corporation | Primavera P6 Enterprise Project Portfolio Management | High | 8.2 | 2024-04-16 21:26:31 | Deep Dive |
| CVE-2024-0650 | Project Worlds Visitor Management System URL dataset.php cross site scripting | Project Worlds | Visitor Management System | Medium | 4.3 | 2024-01-17 23:31:05 | Deep Dive |
| CVE-2024-0498 | Project Worlds Lawyer Management System searchLawyer.php sql injection | Project Worlds | Lawyer Management System | Medium | 6.3 | 2024-01-13 18:00:06 | Deep Dive |
| CVE-2024-0266 | Project Worlds Online Lawyer Management System User Registration cross site scripting | Project Worlds | Online Lawyer Management System | Medium | 4.3 | 2024-01-07 05:31:03 | Deep Dive |
| CVE-2023-44482 | Leave Management System Project v1.0 - Multiple Authenticated SQL Injections (SQLi) | Projectworlds Pvt. Limited | Leave Management System Project | High | 8.8 | 2023-12-21 18:59:06 | Deep Dive |
| CVE-2023-44481 | Leave Management System Project v1.0 - Multiple Authenticated SQL Injections (SQLi) | Projectworlds Pvt. Limited | Leave Management System Project | High | 8.8 | 2023-12-21 18:58:21 | Deep Dive |
| CVE-2023-49860 | WordPress WP Project Manager Plugin <= 2.6.7 is vulnerable to Cross Site Scripting (XSS) | weDevs | WP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts | Medium | 6.5 | 2023-12-14 16:18:46 | Deep Dive |
| CVE-2023-47544 | WordPress Atarim Plugin <= 3.12 is vulnerable to Cross Site Scripting (XSS) | Atarim | Visual Website Collaboration, Feedback & Project Management – Atarim | High | 7.1 | 2023-11-14 21:01:23 | Deep Dive |