Input validation vulnerability in Tutor LMS Pro 3.7.0

The Tutor LMS Pro is a plugin that helps create and manage online courses on WordPress. Unfortunately, it has a security vulnerability that allows hackers to use a specific parameter to inject malicious code into the database, potentially giving them access to sensitive information. This vulnerability only affects the Pro version of the plugin and can be exploited by authenticated attackers with Tutor-level access or higher. This issue has been identified in all versions up to 3.7.0.

Detected in:

Tutor LMS Pro fixed vulnerable versions: >= * <= 3.7.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.