CVE-2024-11868
LearnPress – WordPress LMS Plugin <= 4.2.7.3 - Course Material Sensitive Information Exposure via REST API
Record summary
CVE-2024-11868 has a selected CVSS score of 5.3 (medium); EIP currently links 1 Nuclei template.
Description
The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.2.7.3 via class-lp-rest-material-controller.php. This makes it possible for unauthenticated attackers to extract potentially sensitive paid course material.
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Mar 31, 2026 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 10, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
LearnPress – WordPress LMS Plugin for Create and Sell Online CoursesBrowse thimpress / LearnPress – WordPress LMS Plugin for Create and Sell Online CoursesDefault status: unaffected | CVE List | Through 4.2.7.3 | affected |
learnpressBrowse thimpress / learnpressDefault status: unknown | CVE List, VulnCheck | Through 4.2.7.3 | affected |
Nuclei templates
1ProjectDiscoveryMEDIUMLearnPress < 4.2.7.4 - Course Material - Information DisclosureCVSS 5.3
LearnPress – WordPress LMS Plugin contains a sensitive information exposure caused by insecure handling in class-lp-rest-material-controller.php, letting unauthenticated attackers extract paid course material, exploit requires no authentication.
Impact
Unauthenticated attackers can access and extract sensitive paid course content, leading to intellectual property theft and privacy breaches.
Remediation
Update to the latest version beyond 4.2.7.3 or apply security patches provided by the vendor.
Source: ProjectDiscovery