A vulnerability was found in wedevs WP Project Manager Plugin up to 2.6.17 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /pm/v2/settings/notice of the component Setting Handler. The manipulation leads to missing authorization.
This vulnerability is known as CVE-2024-13752. The attack can be launched remotely. There is no exploit available.