| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-1463 | LearnPress <= 4.2.6.3 - Authenticated(LP Instructor+) Stored Cross-Site Scripting | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | Medium | 4.4 | 2024-04-09 18:59:12 | Deep Dive |
| CVE-2024-1289 | LearnPress <= 4.2.6.3 - Insecure Direct Object Reference | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | Medium | 6.5 | 2024-04-09 18:58:32 | Deep Dive |
| CVE-2024-31241 | WordPress LearnPress Export Import plugin <= 4.0.3 - Auth. SQL Injection vulnerability | ThimPress | LearnPress Export Import | High | 7.6 | 2024-04-07 18:00:12 | Deep Dive |
| CVE-2024-2115 | LearnPress – WordPress LMS Plugin <= 4.0.0 - Cross-Site Request Forgery to Privilege Escalation | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | High | 8.8 | 2024-04-05 07:34:36 | Deep Dive |
| CVE-2024-30508 | WordPress WP Hotel Booking plugin <= 2.0.9.2 - Broken Access Control vulnerability | ThimPress | WP Hotel Booking | Medium | 6.5 | 2024-03-29 14:17:21 | Deep Dive |
| CVE-2023-6567 | LearnPress <= 4.2.5.7 - Unauthenticated SQL Injection via order_by | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | Critical | 9.8 | 2024-01-11 08:32:37 | Deep Dive |
| CVE-2023-6634 | LearnPress <= 4.2.5.7 - Command Injection | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | High | 8.1 | 2024-01-11 08:32:29 | Deep Dive |
| CVE-2023-6223 | LearnPress <= 4.2.5.7 - Insecure Direct Object Reference to Information Disclosure | thimpress | LearnPress – WordPress LMS Plugin for Create and Sell Online Courses | Medium | 4.3 | 2024-01-11 06:49:32 | Deep Dive |
| CVE-2023-40009 | WordPress WP Pipes Plugin <= 1.4.0 is vulnerable to Cross Site Request Forgery (CSRF) | ThimPress | WP Pipes | Medium | 5.4 | 2023-10-03 12:45:15 | Deep Dive |
| CVE-2020-36757 | WP Hotel Booking <= 1.10.1 - Cross-Site Request Forgery Bypass | thimpress | WP Hotel Booking | Medium | 4.3 | 2023-07-12 06:52:35 | Deep Dive |
| CVE-2023-30487 | WordPress LearnPress Export Import Plugin <= 4.0.2 is vulnerable to Cross Site Scripting (XSS) | ThimPress | LearnPress Export Import | High | 7.1 | 2023-05-18 08:37:57 | Deep Dive |
| CVE-2022-45355 | WordPress WP Pipes Plugin <= 1.33 is vulnerable to SQL Injection (SQLi) | ThimPress | WP Pipes | High | 8.2 | 2023-03-29 18:35:29 | Deep Dive |
| CVE-2022-45820 | WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection | ThimPress | LearnPress – WordPress LMS Plugin | Critical | 9.1 | 2023-01-24 09:18:46 | Deep Dive |
| CVE-2022-45808 | WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection | ThimPress | LearnPress – WordPress LMS Plugin | Critical | 9.9 | 2023-01-24 09:13:43 | Deep Dive |
| CVE-2022-47615 | WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to Local File Inclusion | ThimPress | LearnPress – WordPress LMS Plugin | Critical | 9.3 | 2023-01-24 09:05:27 | Deep Dive |
| CVE-2021-36852 | WordPress WP Hotel Booking plugin <= 1.10.5 - Cross-Site Request Forgery (CSRF) vulnerability | ThimPress | WP Hotel Booking | Medium | 4.3 | 2022-08-22 14:45:48 | Deep Dive |
| CVE-2018-16174 | WordPress LearnPress 安全漏洞 | ThimPress | LearnPress | 中危 | - | 2019-01-09 22:00:00 | Deep Dive |
| CVE-2018-16175 | WordPress LearnPress SQL注入漏洞 | ThimPress | LearnPress | 高危 | - | 2019-01-09 22:00:00 | Deep Dive |
| CVE-2018-16173 | WordPress LearnPress 跨站脚本漏洞 | ThimPress | LearnPress | 中危 | - | 2019-01-09 22:00:00 | Deep Dive |