MasterStudy LMS WordPress 插件在 3.7.40 版本之前存在安全漏洞:该插件在将对应订单标记为已完成时,并未验证支付通知中的金额、收款方、币种或状态。这使得未认证的用户只需支付一个极小的金额(token 金额),即可将全额订单标记为已完成,从而获取付费内容的使用权限。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Unknown | MasterStudy LMS WordPress Plugin | < 3.7.40 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | MasterStudy LMS WordPress Plugin | 0 ~ 3.7.40 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76547 | Profile Builder < 4.0.1 - Admin+ PHP Object Injection via Import/Export | |
| CVE-2026-81200 | MasterStudy LMS < 3.7.42 - Instructor+ Cross-Tenant Order Billing PII Disclosure via IDOR | |
| CVE-2026-81342 | MasterStudy LMS < 3.7.43 - Unauthenticated Open Redirect | |
| CVE-2026-81346 | Frontend Admin by DynamiApps < 3.29.11 - Subscriber+ Arbitrary Membership Plan Deletion | |
| CVE-2026-80311 | Stripe Payment Forms by WP Full Pay < 8.5.5 - Cross-Customer Subscription Cancellation via | |
| CVE-2026-80488 | WP Ultimate CSV Importer < 9.0 - Admin+ SQLi via AIOSEO Import Fields | |
| CVE-2026-77704 | Amelia 1.2.32 - 2.4.8 - Amelia Customer+ Appointment Status Update and Self-Approval | |
| CVE-2026-77786 | Rank Math SEO < 1.0.277 - Editor+ Core Settings Modification via fix-site-seo Ability | |
| CVE-2026-76586 | BookingPress 1.5.6 - 1.6.2 - Unauthenticated Booking Price Manipulation via PayPal Payment | |
| CVE-2026-77010 | HEL Online Classroom: AI-powered Online Classrooms <= 1.0.3 - Unauthenticated Moderator Jo | |
| CVE-2026-77012 | Icollect <= 1.0.0 - Unauthenticated Arbitrary File Read, SSRF and Path Traversal File Writ | |
| CVE-2026-77008 | HEL Online Classroom: AI-powered Online Classrooms <= 1.0.3 - Unauthenticated Plugin Setti | |
| CVE-2026-77007 | HEL Online Classroom: AI-powered Online Classrooms <= 1.0.3 - Unauthenticated BigBlueButto | |
| CVE-2026-16259 | Uix UserCenter <= 1.0.3 - Unauthenticated Privilege Escalation | |
| CVE-2026-76548 | Profile Builder < 4.0.1 - Unauthenticated Unpublished Content and Media Modification via F | |
| CVE-2026-17520 | Newsletters < 4.17 - Unauthenticated API Access via Predictable API Key | |
| CVE-2026-17522 | Newsletters < 4.17 - Arbitrary Plugin Option Update via CSRF | |
| CVE-2026-76546 | Profile Builder < 4.0.1 - Contributor+ Stored XSS via Format Date Shortcode | |
| CVE-2026-19430 | CatFolders Document Gallery Pro < 2.0.7 - Unauthenticated Missing Authorization via downlo | |
| CVE-2026-18234 | MStore API < 4.21.1 - Subscriber+ Arbitrary Order Payment Bypass via Wallet |
Showing top 20 of 26 CVEs. View all on vendor page → →
No comments yet