Vulnerabilities / LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress / WPSEC-2026-0477
LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress <= 10.2.1 - Unauthenticated Sensitive Information Exposure via RSS Feeds
Medium 5.3
CWE-200Fixed in 10.3.0
- ID
- WPSEC-2026-0477
- Plugin
- LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes (lifterlms)
- Affected
- all versions before 10.3.0
- Remediation
- Update to 10.3.0 or later.
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- Weakness
- CWE-200
- Usage
- Plugin Low · Affected versions Low among sites WPSec scans, 2026-10-06
- Attack surface
- LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress on WPSec AttackSurface
- Fix released
- Published
Description
The LifterLMS plugin for WordPress is vulnerable to Sensitive Information Exposure via RSS feeds in all versions up to, and including, 10.2.1. Lessons, quizzes and certificates were included in list and search feeds, and the content restriction checks did not run in those non-singular contexts. This makes it possible for unauthenticated attackers to read restricted lesson, quiz and certificate content that should only be available to enrolled students or members.
References
- https://wpsec.com/vuln/WPSEC-2026-0477/
- https://plugins.svn.wordpress.org/lifterlms/tags/10.3.0/
- https://wordpress.org/plugins/lifterlms/
Published by WPSec. Provided as is, without warranty. Corrections: contact us.
This advisory as JSON or Markdown · All advisories: JSON, RSS