The SP Project & Document Manager WordPress plugin...
Moderate severity
Unreviewed
Published
Jul 26, 2022
to the GitHub Advisory Database
•
Updated Jul 25, 2023
Description
Published by the National Vulnerability Database
Jul 25, 2022
Published to the GitHub Advisory Database
Jul 26, 2022
Last updated
Jul 25, 2023
The SP Project & Document Manager WordPress plugin through 4.57 uses an easily guessable path to store user files, bad actors could use that to access other users' sensitive files.
References