CVE-2022-2034
EUVD-2022-3433829.08.2022, 18:15
The Sensei LMS WordPress plugin before 4.5.0 does not have proper permissions set in one of its REST endpoint, allowing unauthenticated users to access private messages sent to teachersEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| automattic | sensei_lms | 𝑥 < 4.5.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration