Loading HuntDB...

SmartyPants

3 Products 10 CVEs

CVE Severity Distribution (All Time)

Critical
0
High
4
Medium
5
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 0 CVEs

Recent CVEs

CVE-2024-37224 HIGH 1 year ago

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in smartypants SP Project & Document Manager.This issue …

CVE-2024-1693 MEDIUM 1 year, 2 months ago

The SP Project & Document Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the cd…

CVE-2024-33923 MEDIUM 1 year, 2 months ago

Missing Authorization vulnerability in Smartypants SP Project & Document Manager.This issue affects SP Project & Document Manager : from n/a through …

CVE-2024-32551 HIGH 1 year, 3 months ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smartypants SP Project & Document Manager.This …

CVE-2024-24868 HIGH 1 year, 5 months ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smartypants SP Project & Document Manager.This …

CVE-2023-36677 UNKNOWN 1 year, 8 months ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smartypants SP Project & Document Manager allow…

CVE-2023-36530 MEDIUM 1 year, 11 months ago

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Smartypants SP Project & Document Manager plugin <= 4.67 versions.

CVE-2023-3063 HIGH 2 years, 1 month ago

The SP Project & Document Manager plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 4.67. Thi…

CVE-2022-34857 MEDIUM 2 years, 11 months ago

Reflected Cross-Site Scripting (XSS) vulnerability in smartypants SP Project & Document Manager plugin <= 4.59 at WordPress

CVE-2021-38315 MEDIUM 3 years, 11 months ago

The SP Project & Document Manager WordPress plugin is vulnerable to attribute-based Reflected Cross-Site Scripting via the from and to parameters in …