Pricing
Case studies
Login
Start trial
Zephyr Project Manager
Dylan James
Developer
3.3.205
Latest version
1,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
19 patched
9 Mitigation rules
Authenticated (Subscriber+) Limited Privilege Escalation vulnerability
<= 3.3.101
02/02/2026
Authenticated (Custom+) Arbitrary File Read And Server-Side Request Forgery vulnerability
<= 3.3.203
17/12/2025
Authenticated (Admin+) Stored Cross-Site Scripting vulnerability
<= 3.3.202
26/09/2025
Broken Access Control Vulnerability
<= 3.3.201
26/08/2025
Broken Access Control Vulnerability
<= 3.3.200
16/04/2025
Cross Site Scripting (XSS) vulnerability
<= 3.3.101
10/04/2025
Insecure Direct Object References (IDOR) vulnerability
<= 3.3.102
20/08/2024
Cross Site Scripting (XSS) vulnerability
<= 3.3.102
20/08/2024
Insecure Direct Object References (IDOR) vulnerability
<= 3.3.100
16/08/2024
Authenticated (Subscriber+) Stored Cross-Site Scripting via filename Parameter vulnerability
<= 3.3.100
05/08/2024
Editor+ stored XSS vulnerability
< 3.3.99
30/07/2024
Sensitive Data Exposure via Export File vulnerability
<= 3.3.99
12/07/2024
Privilege Escalation vulnerability
<= 3.3.97
04/07/2024
Cross Site Request Forgery (CSRF) vulnerability
<= 3.3.93
13/06/2023
Open Redirection vulnerability
<= 3.3.9
27/04/2023
Reflected Cross-Site Scripting (XSS) vulnerability
< 3.2.5
29/08/2022
Unauthorized REST Calls to Stored Cross-Site Scripting (XSS) vulnerability
< 3.2.5
29/08/2022
Multiple Unauthenticated SQL Injection (SQLi) vulnerabilities
< 3.2.5
29/08/2022
Reflected Cross-Site Scripting (XSS) vulnerability
<= 3.2.40
23/05/2022