All 7 CVE vulnerabilities found in LearnPress – WordPress LMS Plugin, with AI-generated Chinese analysis, references, and POCs.
Vendor: Unknown
| CVE ID | Title | CVSS | Severity | Paused |
|---|---|---|---|---|
| CVE-2022-45820 | WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection CWE-89 | 9.1 | Critical | 2023-01-24 |
| CVE-2022-45808 | WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection CWE-89 | 9.9 | Critical | 2023-01-24 |
| CVE-2022-47615 | WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to Local File Inclusion | 9.3 | Critical | 2023-01-24 |
| CVE-2022-3360 | LearnPress < 4.1.7.2 - Unauthenticated PHP Object Injection via REST API CWE-502 | 8.1 | - | 2022-10-31 |
| CVE-2022-0271 | LearnPress < 4.1.6 - Reflected Cross-Site Scripting CWE-79 | 6.1 | - | 2022-04-11 |
| CVE-2021-24951 | LearnPress < 4.1.4 - Admin+ SQL Injection CWE-89 | 7.2 | - | 2021-12-13 |
| CVE-2021-24702 | LearnPress < 4.1.3.1 - Multiple Admin+ Stored Cross-Site Scripting CWE-79 | 4.8 | - | 2021-10-18 |
All 7 known CVE vulnerabilities affecting LearnPress – WordPress LMS Plugin with full Chinese analysis, references, and POCs where available.