← WordPress Vulnerabilities
WordPress security by component

Creator LMS – The LMS for Creators, Coaches, and Trainers

Creator LMS – The LMS for Creators, Coaches, and Trainers is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jan 20, 2026; the highest CVE/CNA score is 8.8.

Plugin slug: creator-lms-the-lms-for-creators-coaches-and-trainers

CVE-2025-15347: Creator LMS – The LMS for Creators, Coaches, and Trainers: Privilege escalation or authentication bypass

Creator LMS – The LMS for Creators, Coaches, and Trainers is affected by privilege escalation or authentication bypass. Exploitation requires at least contributor-level access. A successful request can grant permissions or access that the caller should not possess.

PublishedJan 20, 2026
Safe version guidanceSee mitigation notes
Safe version
Jan 20, 2026 CVE-2025-15347
Creator LMS – The LMS for Creators, Coaches, and Trainers: Privilege escalation or authentication bypass
Creator LMS – The LMS for Creators, Coaches, and Trainers is affected by privilege escalation or authentication bypass. Exploitation requires at least contributor-level access. A successful request can grant permissions or access that the caller should not possess.
See mitigation notes
CVE8.8
NVDPending