A vulnerability was found in Project Management, Bug and Issue Tracking Plugin up to 5.0.x on WordPress. It has been classified as critical. This affects an unknown function of the component Issue-Tracker Configuration. Performing a manipulation results in improper authentication.
This vulnerability was named CVE-2026-12877. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.