cleantalk
Vulnerabilities and Security Researches

LMS by Masteriyo – WordPress Learning Management System, eLearning Platform, Online Education System & Online Course , CVE-2025-54699

CVE, Research URL

CVE-2025-54699

Published on
Aug 14, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in masteriyo Masteriyo - LMS allows Stored XSS. This issue affects Masteriyo - LMS: from n/a through 1.18.3.
Affected versions
max 1.18.4.
Status
vulnerable