cleantalk
Vulnerabilities and Security Researches

Academy LMS – eLearning and online course solution for WordPress, CVE-2025-59562

CVE, Research URL

CVE-2025-59562

Published on
Sep 23, 2025
Research Description
Authorization Bypass Through User-Controlled Key vulnerability in Kodezen LLC Academy LMS academy allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Academy LMS: from n/a through <= 3.3.4.
Affected versions
max 3.3.5.
Status
vulnerable