cleantalk
Vulnerabilities and Security Researches

LearnPress – WordPress LMS Plugin, CVE-2025-66054

CVE, Research URL

CVE-2025-66054

Published on
Dec 18, 2025
Research Description
Missing Authorization vulnerability in ThimPress LearnPress learnpress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects LearnPress: from n/a through <= 4.2.9.4.
Affected versions
max 4.3.0.
Status
vulnerable