All 7 CVE vulnerabilities found in Masteriyo - LMS, with AI-generated Chinese analysis, references, and POCs.
Vendor: masteriyo
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-64270 | WordPress Masteriyo - LMS plugin <= 2.0.3 - Sensitive Data Exposure vulnerability CWE-497 | 7.5AI | HighAI | 2025-12-18 |
| CVE-2025-54699 | WordPress Masteriyo - LMS Plugin plugin <= 1.18.3 - Cross Site Scripting (XSS) Vulnerability CWE-79 | 6.5 | Medium | 2025-08-14 |
| CVE-2024-33939 | WordPress LMS by Masteriyo plugin <= 1.7.3 - Broken Authentication vulnerability CWE-288 | 5.3 | Medium | 2025-05-19 |
| CVE-2024-43158 | WordPress Masteriyo LMS plugin <= 1.11.4 - Broken Access Control vulnerability CWE-862 | 7.5 | High | 2024-11-01 |
| CVE-2024-43159 | WordPress Masteriyo LMS plugin <= 1.11.6 - Broken Access Control vulnerability CWE-862 | 5.3 | Medium | 2024-11-01 |
| CVE-2024-43239 | WordPress Masteriyo LMS plugin <= 1.11.4 - Insecure Direct Object Reference (IDOR) vulnerability CWE-639 | 4.3 | Medium | 2024-08-18 |
| CVE-2024-24882 | WordPress LMS by Masteriyo plugin <= 1.7.2 - Privilege Escalation vulnerability CWE-266 | 8.8 | - | 2024-05-17 |
All 7 known CVE vulnerabilities affecting Masteriyo - LMS with full Chinese analysis, references, and POCs where available.