Masteriyo LMS 插件在 3.4.2 版本之前存在一个安全漏洞,该漏洞未能验证发起请求的用户是否拥有其所返回的“课程进度”记录的所有权。因此,任何经过身份认证的用户(例如自行注册的订阅者)都可以读取其他用户的学习活动信息。 该插件在执行所有权检查时,存在一个逻辑缺陷:当请求所指定的账户名称参数未被设置为非零值时,该所有权检查会被跳过,从而导致一次性返回网站上所有学习者的记录。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Unknown | Masteriyo LMS | 0 ~ 3.4.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-93662 | Events Manager 7.4.1 - 7.4.4 - Subscriber+ Unpublished Event and Location Disclosure via ' | |
| CVE-2026-93661 | Events Manager < 7.4.5 - Contributor+ Arbitrary Ticket Overwrite via IDOR | |
| CVE-2026-88847 | MasterStudy LMS < 3.7.50 - Subscriber+ Lesson Completion Record Creation | |
| CVE-2026-89004 | WPeMatico RSS Feed Fetcher < 2.8.26 - Contributor+ Campaign Configuration and Log Disclosu | |
| CVE-2026-89005 | WPeMatico RSS Feed Fetcher < 2.8.26 - Contributor+ Stored XSS via Word to Category | |
| CVE-2026-89002 | WPeMatico RSS Feed Fetcher < 2.8.26 - Contributor+ Stored XSS via Campaign Item Preview | |
| CVE-2026-88843 | MasterStudy LMS 3.5.29 - < 3.7.50 - Contributor+ LFI via Elementor Courses Categories Widg | |
| CVE-2026-88846 | MasterStudy LMS 2.3.0 - < 3.7.50 - Unauthenticated Account Creation with Registration Disa | |
| CVE-2026-88845 | MasterStudy LMS 2.3.0 - < 3.7.50 - Subscriber+ Course and Lesson Creation via Demo Import | |
| CVE-2026-82195 | 10Web Booster < 2.34.0 - Unauthenticated Connection Secret Disclosure and Deletion | |
| CVE-2026-82850 | Masteriyo LMS < 3.4.2 - Subscriber+ Quiz Answer Key Disclosure | |
| CVE-2026-84151 | The Post Grid < 7.9.5 - Contributor+ Stored HTML/iframe Injection via wp_kses_post Allow-L | |
| CVE-2026-74991 | WPForms Lite 1.8.8.2 - 2.0.1.1 - Unauthenticated Stripe Refund and Subscription Cancellati | |
| CVE-2026-80338 | CMB2 < 2.13.0 - Subscriber+ Arbitrary Option Corruption via oEmbed Handler | |
| CVE-2026-80513 | wpForo Forum < 3.1.6 - Subscriber+ PHP Object Injection via Profile Fields |
No comments yet