SQL Injection Vulnerability in MasterStudy LMS by Kodebow
CVE-2026-40766
8.5HIGH
What is CVE-2026-40766?
The MasterStudy LMS plugin versions up to 3.7.25 are vulnerable to SQL Injection attacks, allowing unauthorized users to manipulate database queries. Successful exploitation may lead to unauthorized data access and other malicious activities, posing a significant threat to the integrity and security of affected installations.
Affected Version(s)
MasterStudy LMS <= 3.7.25