WP Clinic
Log in Sign up

CVE · High

CVE-2024-37256 — Tutor LMS – eLearning and online course solution [tutor] < 2.7.2

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-37256 Tutor LMS – eLearning and online course solution [tutor] < 2.7.2 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') High 7.2 < 2.7.2 2.7.2 2024-06-27

CVE-2024-37256

<p>WordPress Tutor LMS Plugin <= 2.7.1 is vulnerable to SQL Injection</p><p>Software: Tutor LMS</p><p>Link: https://wordpress.org/plugins/tutor/#developers</p><p>Affected Version <= 2.7.1</p><p>Fixed in version 2.7.2 </p>

Source: Patchstack

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.