CVE Database /
CVE-2024-1208
CVE · Medium
CVE-2024-1208 — LearnDash LMS [sfwd-lms] < 4.10.3
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2024-1208
|
LearnDash LMS [sfwd-lms] < 4.10.3 |
Exposure of Sensitive Information to an Unauthorized Actor |
Medium
5.3
|
< 4.10.3
|
4.10.3 |
2024-02-02 |
—
|
CVE-2024-1208
The LearnDash LMS plugin versions before 4.10.3 contain a sensitive data exposure vulnerability that was discovered and reported by Karl Emil Nikka. This flaw allows unauthorized access to sensitive information within the plugin. WordPress site administrators using this plugin should update immediately to version 4.10.3 or later to address this security issue.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings