CVE-2024-31118 - WordPress SP Project & Document Manager plugin <= 4.70 - Broken Access Control to XSS vulnerability
CVE ID : CVE-2024-31118
Published : Feb. 17, 2026, 3:16 p.m. | 3 hours, 6 minutes ago
Description : Missing Authorization vulnerability in Smartypants SP Project & Document Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SP Project & Document Manager: from n/a through 4.70.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Feb. 17, 2026, 3:16 p.m. | 3 hours, 6 minutes ago
Description : Missing Authorization vulnerability in Smartypants SP Project & Document Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SP Project & Document Manager: from n/a through 4.70.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...