5.3
CVSSv3

CVE-2022-2034

Published: 29/08/2022 Updated: 07/11/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Sensei LMS WordPress plugin prior to 4.5.0 does not have proper permissions set in one of its REST endpoint, allowing unauthenticated users to access private messages sent to teachers

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

automattic sensei lms