| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-4902 | Tutor LMS – eLearning and online course solution <= 2.7.1 -Authenticated (Administrator+) SQL Injection | themeum | Tutor LMS – eLearning and online course solution | High | 7.2 | 2024-06-07 04:33:25 | Deep Dive |
| CVE-2024-4223 | Tutor LMS <= 2.7.0 - Missing Authorization | themeum | Tutor LMS – eLearning and online course solution | Critical | 9.8 | 2024-05-16 08:32:51 | Deep Dive |
| CVE-2024-4318 | Tutor LMS <= 2.7.0 - Authenticated (Instructor+) SQL Injection | themeum | Tutor LMS – eLearning and online course solution | High | 8.8 | 2024-05-16 05:33:28 | Deep Dive |
| CVE-2024-4279 | Tutor LMS – eLearning and online course solution <= 2.7.0 - Authenticated (Instructor+) Insecure Direct Object Reference to Arbitrary Course Deletion | themeum | Tutor LMS – eLearning and online course solution | Medium | 6.5 | 2024-05-16 05:33:26 | Deep Dive |
| CVE-2024-3553 | Tutor LMS <= 2.6.2 - Missing Authorization to Unauthenticated Limited Options Update | themeum | Tutor LMS – eLearning and online course solution | Medium | 6.5 | 2024-05-02 16:52:53 | Deep Dive |
| CVE-2024-3994 | Tutor LMS – eLearning and online course solution <= 2.6.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'tutor_instructor_list' Shortcode | themeum | Tutor LMS – eLearning and online course solution | Medium | 5.4 | 2024-04-25 09:29:58 | Deep Dive |
| CVE-2024-29913 | WordPress Tutor LMS Elementor Addons plugin <= 2.1.3 - Cross Site Scripting (XSS) vulnerability | Themeum | Tutor LMS Elementor Addons | Medium | 6.5 | 2024-03-27 07:02:45 | Deep Dive |
| CVE-2024-1751 | Tutor LMS – eLearning and online course solution <= 2.6.1 - Authenticated (Subscriber+) SQL Injection | themeum | Tutor LMS – eLearning and online course solution | High | 8.8 | 2024-03-13 15:27:26 | Deep Dive |
| CVE-2024-1502 | Tutor LMS – eLearning and online course solution <= 2.6.1 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Deletion | themeum | Tutor LMS – eLearning and online course solution | Medium | 5.4 | 2024-03-12 23:33:50 | Deep Dive |
| CVE-2024-1503 | Tutor LMS – eLearning and online course solution <= 2.6.1 - Cross-Site Request Forgery to Plugin Deactivation and Data Erase | themeum | Tutor LMS – eLearning and online course solution | Medium | 4.3 | 2024-03-12 23:33:49 | Deep Dive |
| CVE-2024-1133 | Tutor LMS <= 2.6.0 - Missing Authorization | themeum | Tutor LMS – eLearning and online course solution | Medium | 4.3 | 2024-02-20 18:56:49 | Deep Dive |
| CVE-2024-1128 | Tutor LMS <= 2.6.0 - Authenticated(Student+) HTML Injection via Q&A | themeum | Tutor LMS – eLearning and online course solution | Medium | 5.4 | 2024-02-20 18:56:22 | Deep Dive |
| CVE-2023-50859 | WordPress WP Crowdfunding Plugin <= 2.1.6 is vulnerable to Cross Site Scripting (XSS) | Themeum | WP Crowdfunding | Medium | 6.5 | 2023-12-28 10:16:52 | Deep Dive |
| CVE-2023-49829 | WordPress Tutor LMS Plugin <= 2.2.4 is vulnerable to Cross Site Scripting (XSS) | Themeum | Tutor LMS – eLearning and online course solution | Medium | 5.9 | 2023-12-15 15:30:36 | Deep Dive |
| CVE-2023-47532 | WordPress WP Crowdfunding Plugin <= 2.1.6 is vulnerable to Cross Site Scripting (XSS) | Themeum | WP Crowdfunding | Medium | 5.8 | 2023-11-14 21:14:49 | Deep Dive |
| CVE-2023-25700 | WordPress Tutor LMS Plugin <= 2.1.10 is vulnerable to SQL Injection | Themeum | Tutor LMS | 超危 | - | 2023-11-03 16:44:47 | Deep Dive |
| CVE-2023-25800 | WordPress Tutor LMS Plugin <= 2.2.0 is vulnerable to SQL Injection | Themeum | Tutor LMS | 高危 | - | 2023-11-03 16:26:13 | Deep Dive |
| CVE-2023-25990 | WordPress Tutor LMS Plugin <= 2.1.10 is vulnerable to SQL Injection | Themeum | Tutor LMS | 高危 | - | 2023-11-03 16:22:47 | Deep Dive |
| CVE-2022-40963 | WordPress WP Page Builder plugin <= 1.2.6 - Multiple Auth. Stored Cross-Site Scripting (XSS) vulnerabilities | Themeum | WP Page Builder (WordPress plugin) | Medium | 4.8 | 2022-11-18 22:19:45 | Deep Dive |
| CVE-2021-24242 | Tutor LMS < 1.8.8 - Authenticated Local File Inclusion | Themeum | Tutor LMS – eLearning and online course solution | 低危 | - | 2021-04-22 21:00:51 | Deep Dive |