Description
WordPress Plugin Learning Courses is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin Learning Courses version 4.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.7.1 or latest
References
Related Vulnerabilities
WordPress Plugin Arigato Autoresponder and Newsletter Cross-Site Scripting (2.7.1.1)
WordPress Plugin Anti-Malware Security and Brute-Force Firewall Local File Inclusion (4.18.63)
XWiki Missing Authorization Vulnerability (CVE-2022-41929)
WordPress Plugin Nextend Google Connect Unspecified Vulnerability (1.5.3)
WordPress Plugin BackWPup Multiple Unspecified Vulnerabilities (3.2.1)