Authorization Bypass Vulnerability in Themeum's Tutor LMS Plugin
CVE-2025-47555
8.1HIGH
What is CVE-2025-47555?
The Themeum Tutor LMS plugin is susceptible to an authorization bypass vulnerability due to incorrectly configured access control security levels. This issue enables unauthorized users to gain access to restricted functionalities and sensitive information. The vulnerability impacts versions from n/a to 3.9.4, highlighting the importance of applying timely security updates and conducting thorough access control assessments to mitigate potential risks.
Affected Version(s)
Tutor LMS 0 <= 3.9.4