← All credits
WPScan
3924 vulnerability records and advisories credit this contributor.
CVE-2026-81199
MasterStudy LMS < 3.7.46 - Unauthenticated Student Statistics Disclosure via student/stats REST Route
CVE-2026-81198
MasterStudy LMS < 3.7.46 - Instructor+ Cross-Course Curriculum Deletion and Tampering via IDOR
CVE-2026-81197
MasterStudy LMS < 3.7.46 - Unauthenticated Unpublished Course Title Disclosure via course-list REST Route
CVE-2026-81196
MasterStudy LMS < 3.7.46 - Instructor+ Quiz Answer Disclosure via IDOR
CVE-2026-81195
MasterStudy LMS < 3.7.46 - Unauthenticated Student Enrollment Disclosure via student-courses REST Route
CVE-2026-81194
MasterStudy LMS < 3.7.46 - Subscriber+ Cross-Instructor Order Data Disclosure via author_id Parameter
CVE-2026-80467
Advanced Custom Fields: Extended 0.9.2.2 - 0.9.2.6 - Unauthenticated Privilege Escalation via Front-End User Insert Action
CVE-2026-79621
CatalogX < 6.1.3 - Unauthenticated Email Content Injection via Shared Transient
CVE-2026-78153
Restrict User Access 2.6 - 2.8 - Unauthenticated Content Protection Bypass via REST API Route Normalization
CVE-2026-78151
FormLayer < 1.0.9 - Unauthenticated Form Configuration Disclosure via Form Submission Response