LazyCoders LLC LazyTasks Privilege Escalation Vulnerability

Vulnerability

A privilege escalation vulnerability has been identified in the LazyTasks project task management plugin by LazyCoders LLC, affecting versions through 1.4.01. This vulnerability allows low-privileged users to escalate their privileges, potentially leading to full control of the website.

Impact

Exploitation of this vulnerability could allow a low-privileged user to gain higher privileges, with the potential to take full control of the website.

Remediation

Users are advised to update to a version later than 1.4.01. Patchstack has issued a mitigation rule to block attacks until an official fix is available.

Added: Jan 22, 2026, 5:24 PM
Updated: Jan 22, 2026, 5:24 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
7.4
remediation
0.0
relevance
2.3
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.