All 37 CVE vulnerabilities found in LearnPress – WordPress LMS Plugin for Create and Sell Online Courses, with AI-generated Chinese analysis, references, and POCs.
This page details vulnerability aggregations for LearnPress, a widely used WordPress LMS plugin developed by Themeum, focusing on common weakness classes such as cross-site scripting and SQL injection. It compiles security issues reported for this specific product within the context of the broader WordPress ecosystem, covering data from its initial release through recent updates to ensure comprehensive historical tracking. Users can utilize this resource to track vendor advisories related to theme and plugin security, understand the technical implications of specific weakness classes within an LMS environment, and look up the product's complete vulnerability history to assess long-term security posture. By centralizing information on authorization bypasses, file inclusion flaws, and improper input validation, this aggregation serves as a neutral reference for security researchers, WordPress developers, and site administrators seeking to evaluate risks associated with this popular course creation tool. The collected data reflects publicly disclosed incidents and official patches, providing insight into how frequently this software has been targeted and how effectively the maintainers have addressed reported security gaps. This objective summary aids in understanding the attack surface of LearnPress without implying any endorsement or condemnation of the vendor, allowing users to make informed decisions about their own implementation and update strategies. The focus remains strictly on factual security data to support informed risk management practices.
Vendor: thimpress
All 37 known CVE vulnerabilities affecting LearnPress – WordPress LMS Plugin for Create and Sell Online Courses with full Chinese analysis, references, and POCs where available.