Access violation vulnerability in LearnPress – WordPress LMS Plugin 4.2.6.3

The LearnPress plugin for WordPress has a security issue that affects all versions up to 4.2.6.3. This issue allows people who are logged in to the website to see information about orders placed by other users and guests. This could potentially allow them to access paid courses that were purchased by guests. It also exposes the email addresses of other users.

Detected in:

LearnPress – WordPress LMS Plugin fixed vulnerable versions: >= * <= 4.2.6.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.