Browse all 3 CVE security advisories affecting LearnDash. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-16310 | MemberDash <= 1.8.5 - Unauthenticated Account Takeover via Insecure Direct Object Reference via 'id' Parameter — MemberDash CWE-639 | 9.8 | Critical | 2026-09-06 |
| CVE-2025-24662 | WordPress LearnDash LMS Plugin <= 4.20.0.1 - Broken Access Control vulnerability — LearnDash LMS CWE-862 | 5.3 | Medium | 2025-01-27 |
| CVE-2023-28777 | WordPress LearnDash LMS Plugin <= 4.5.3 is vulnerable to SQL Injection — LearnDash LMS CWE-89 | 8.5 | High | 2023-10-31 |
This page lists every published CVE security advisory associated with LearnDash. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.