Access Control Flaw in MasterStudy LMS by MasterStudy
CVE-2026-73404
6.5MEDIUM
What is CVE-2026-73404?
A critical access control vulnerability has been identified in the MasterStudy LMS plugin for WordPress, specifically affecting versions up to 3.7.41. This flaw allows subscribers to gain unauthorized access to restricted functionalities, compromising user data and the overall integrity of the learning management system. Implementing necessary updates and patches is crucial to mitigate the risk associated with this vulnerability.
Affected Version(s)
MasterStudy LMS <= 3.7.41