Missing Authorization Vulnerability in ThimPress LearnPress Plugin
CVE-2026-39717
4.3MEDIUM
What is CVE-2026-39717?
A missing authorization vulnerability has been identified in the ThimPress LearnPress plugin, which could lead to unauthorized access due to poorly configured access control security levels. This vulnerability affects LearnPress versions up to 4.4.9.1, allowing potential attackers to exploit these weaknesses and gain inappropriate access to restricted areas or functionalities within the plugin.
Affected Version(s)
LearnPress 0 <= 4.4.9.1