Insecure Direct Object Reference in LearnPress WordPress LMS Plugin
CVE-2026-93882

7.5HIGH

What is CVE-2026-93882?

The LearnPress LMS Plugin for WordPress exhibits a vulnerability that allows unauthorized users to access sensitive course materials. Through an insecure endpoint, attackers can maliciously manipulate parameters to access material files associated with paid courses, provided any course on the site has 'No Required Enroll' enabled. This vulnerability arises from insufficient authorization checks, making it easier for attackers to exploit the system without needing to enroll in a course. As a result, course material that should be protected can be accessed and downloaded by individuals without appropriate permissions.

Affected Version(s)

LearnPress – WordPress LMS Plugin for Create and Sell Online Courses 0 <= 4.4.8

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Khoa Dang
.