Cross Site Scripting Vulnerability in MasterStudy LMS by MasterStudy
CVE-2026-57330
6.5MEDIUM
What is CVE-2026-57330?
A cross site scripting (XSS) vulnerability has been identified in the MasterStudy LMS plugin for WordPress, affecting versions up to 3.7.27. This vulnerability allows attackers to inject malicious scripts into web pages viewed by users, potentially leading to unauthorized access and data theft. Users of the affected version are advised to update to a patched version immediately to mitigate risks associated with this security flaw.
Affected Version(s)
MasterStudy LMS <= 3.7.27