Description
WordPress Plugin MasterStudy LMS-for Online Courses and Education is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently expose draft post titles and excerpts. WordPress Plugin MasterStudy LMS-for Online Courses and Education version 3.2.13 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.3.0 or latest
References
Related Vulnerabilities
WordPress Plugin Podlove Podcast Publisher Multiple Vulnerabilities (2.3.15)
MongoDb CVE-2024-6384 Vulnerability (CVE-2024-6384)
WordPress Plugin ZWM Zeumic Work Management Multiple Unspecified Vulnerabilities (1.0.11)
PHP Other Vulnerability (CVE-2003-0097)
WordPress Plugin Gantry 4 Framework Cross-Site Scripting (4.1.5)