Input validation vulnerability in WPLMS Learning Management System for WordPress, WordPress LMS 4.900

The WPLMS theme for WordPress is vulnerable to a type of attack known as Cross-Site Request Forgery. This means that in versions up to 4.900, there was either no security measure or an inadequate one in place which allowed unauthenticated attackers to invoke certain functions by tricking a site administrator into clicking on a malicious link.

Detected in:

WPLMS Learning Management System for WordPress, WordPress LMS fixed vulnerable versions: >= * < 4.900

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.