SP Project & Document Manager
sp-client-document-manager · plugin
Known security vulnerabilities for SP Project & Document Manager. Find out in seconds which version runs on your site with WP Lens.
12 known vulnerabilities
latest Jun 3, 2026
Vulnerabilities
- High 8.8
WordPress SP Project & Document Manager Plugin <= 4.69 is vulnerable to SQL Injection
- High 8.8
WordPress SP Project & Document Manager Plugin <= 4.67 is vulnerable to SQL Injection
- High 8.8
SP Project & Document Manager <= 4.67 - Authenticated (Subscriber+) Insecure Direct Object Reference to Arbitrary User Password Change
- High 7.6
WordPress SP Project & Document Manage plugin <= 4.71 - Auth. SQL Injection vulnerability
- High 7.5
SP Project & Document Manager <= 4.71 - Missing Authorization to Unauthenticated Arbitrary File Information Disclosure via view_file() Function
- Medium 6.5
WordPress SP Project & Document Manager plugin <= 4.70 - Broken Access Control to XSS vulnerability
- Medium 6.5
WordPress SP Project & Document Manager plugin <= 4.71 - Directory Traversal vulnerability
- Medium 6.3
WordPress SP Project & Document Manager plugin <= 4.69 - Broken Access Control vulnerability
- Medium 6.1
WordPress SP Project & Document Manager plugin <= 4.59 - Reflected Cross-Site Scripting (XSS) vulnerability
- Medium 6.1
SP Project & Document Manager <= 4.25 Reflected Cross-Site Scripting
- Medium 4.8
WordPress SP Project & Document Manager Plugin <= 4.67 is vulnerable to Cross Site Scripting (XSS)
- Medium 4.3
SP Project & Document Manager <= 4.70 - Authenticated (Subscriber+) Arbitrary Folder Name Update