CVE · Medium

CVE-2024-1208 — LearnDash LMS [sfwd-lms] < 4.10.3

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-1208 LearnDash LMS [sfwd-lms] < 4.10.3 Exposure of Sensitive Information to an Unauthorized Actor Medium 5.3 < 4.10.3 4.10.3 2024-02-02

CVE-2024-1208

The LearnDash LMS plugin versions before 4.10.3 contain a sensitive data exposure vulnerability that was discovered and reported by Karl Emil Nikka. This flaw allows unauthorized access to sensitive information within the plugin. WordPress site administrators using this plugin should update immediately to version 4.10.3 or later to address this security issue.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.