WordPress security by component
Academy LMS – WordPress LMS Plugin for Complete eLearning Solution
Plugin description
Academy LMS – WordPress LMS Plugin for Complete eLearning Solution is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Nov 08, 2025; the highest CVE/CNA score is 8.1.
Plugin slug:
academy-lms-wordpress-lms-plugin-for-complete-elearning-solutionLatest vulnerability
CVE-2025-12098: Academy LMS – WordPress LMS Plugin for Complete eLearning Solution: Sensitive information exposure
Academy LMS – WordPress LMS Plugin for Complete eLearning Solution is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.
| Safe version |
|
||
|---|---|---|---|
| Nov 08, 2025 |
CVE-2025-12098
Academy LMS – WordPress LMS Plugin for Complete eLearning Solution: Sensitive information exposure
Academy LMS – WordPress LMS Plugin for Complete eLearning Solution is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.
|
See mitigation notes |
CVE5.3
NVDPending
|
| Oct 22, 2025 |
CVE-2025-11086
Academy LMS – WordPress LMS Plugin for Complete eLearning Solution: Privilege escalation or authentication bypass
Academy LMS – WordPress LMS Plugin for Complete eLearning Solution is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
|
See mitigation notes |
CVE8.1
NVDPending
|