Vulnerabilities > Tutorlms

DATE CVE VULNERABILITY TITLE RISK
2024-08-30 CVE-2024-5784 Missing Authorization vulnerability in Tutorlms Tutor LMS PRO
The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized administrative actions execution due to a missing capability checks on multiple functions like treport_quiz_atttempt_delete and tutor_gc_class_action in all versions up to, and including, 2.7.2.
network
low complexity
tutorlms CWE-862
6.3