Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2025-52717 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in chrisbadgett LifterLMS lifterlms allows SQL Inj… Lifterlms 8.0.7+ Fix from $2,3002025-06-27 MEDIUM 6.1 CVE-2024-13619 The LifterLMS WordPress plugin before 8.0.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected C… Lifterlms 8.0.1+ Fix from $1,6002025-05-15 MEDIUM 5.3 CVE-2025-2290 The LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes plugin for WordPress is vulnerable to Unauthenticated Post Trashing due to a missing … Lifterlms 8.0.2+ Fix from $1,6002025-03-19 HIGH 7.2 CVE-2024-7349 The LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes plugin for WordPress is vulnerable to blind SQL Injection via the 'order' parameter i… Lifterlms 7.7.6+ Fix from $1,9502024-09-06 HIGH 8.8 CVE-2024-4743 The LifterLMS – WordPress LMS Plugin for eLearning plugin for WordPress is vulnerable to SQL Injection via the orderBy attribute of the lifterlms_fav… Lifterlms 7.6.3+ Fix from $1,9502024-06-05 HIGH 8.8 CVE-2024-31363 Cross-Site Request Forgery (CSRF) vulnerability in LifterLMS.This issue affects LifterLMS: from n/a through 7.5.0. Lifterlms 7.5.1+ Fix from $1,9502024-04-12 MEDIUM 5.3 CVE-2024-0377 The LifterLMS – WordPress LMS Plugin for eLearning plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit… Lifterlms 7.5.2+ Fix from $1,6002024-03-13 MEDIUM 6.7 CVE-2023-6160 The LifterLMS – WordPress LMS Plugin for eLearning plugin for WordPress is vulnerable to Directory Traversal in versions up to, and including, 7.4.2 … Lifterlms after 7.4.2 Fix from $1,6002023-11-22 MEDIUM 6.1 CVE-2022-1250 The LifterLMS PayPal WordPress plugin before 1.4.0 does not sanitise and escape some parameters from the payment confirmation page before outputting … Lifterlms 1.4.0+ Fix from $1,6002022-05-02 HIGH 7.5 CVE-2021-24562 The LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress plugin before 4.21.2 was affected by an IDOR issue… Lifterlms 4.21.2+ Fix from $1,9502021-08-23 MEDIUM 5.4 CVE-2021-24308 The 'State' field of the Edit profile page of the LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress plug… Lifterlms 4.21.1+ Fix from $1,6002021-05-24 CRITICAL 9.8 CVE-2020-6008 LifterLMS Wordpress plugin version below 3.37.15 is vulnerable to arbitrary file write leading to remote code execution Lifterlms 3.37.15+ Fix from $2,3002020-03-31 CRITICAL 9.8 CVE-2019-15896EPSS 7% An issue was discovered in the LifterLMS plugin through 3.34.5 for WordPress. The upload_import function in the class.llms.admin.import.php script is… Lifterlms after 3.34.5 Fix from $2,3002019-09-10