Access violation vulnerability in LifterLMS – WordPress LMS Plugin for eLearning 7.5.1

The LifterLMS plugin, which is used for creating online courses on WordPress, has a security issue. This allows anyone to change data without permission. The problem is in the ‘process_review’ function, which is present in all versions up to 7.5.1. This means that people who are not logged in can post as many reviews as they want on the website.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.