Site icon API Security Blog

CVE-2024-11868 LearnPress – WordPress LMS Plugin <= 4.2.7.3 – Course Material Sensitive Information Exposure via REST API

image
The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.7.3 via class-lp-rest-material-controller.php. This makes it possible for unauthenticated attackers to extract potentially sensitive paid course…Read More

Exit mobile version