CVE · Medium

CVE-2024-1209 — LearnDash LMS [sfwd-lms] < 4.10.2

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-1209 LearnDash LMS [sfwd-lms] < 4.10.2 Exposure of Sensitive Information to an Unauthorized Actor Medium 5.3 < 4.10.2 4.10.2 2024-02-02

CVE-2024-1209

The LearnDash LMS plugin for WordPress versions prior to 4.10.2 contains a sensitive data exposure vulnerability. Researcher Karl Emil Nikka identified and disclosed this flaw. The plugin maintainers resolved the issue in version 4.10.2, and users should upgrade to this version or later to address the vulnerability.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.