← WordPress Vulnerabilities
WordPress security by component

LearnPress – Sepay Payment

LearnPress – Sepay Payment is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Mar 25, 2026; the highest CVE/CNA score is 7.5.

Plugin slug: learnpress-sepay-payment

CVE-2026-25002: LearnPress – Sepay Payment: Privilege escalation or authentication bypass

LearnPress – Sepay Payment is affected by privilege escalation or authentication bypass. Exposure depends on how the affected operation is made reachable by the site. A successful request can grant permissions or access that the caller should not possess. The published affected range is <= 4.0.0.

PublishedMar 25, 2026
Known safe version4.0.1
Safe version
Mar 25, 2026 CVE-2026-25002
LearnPress – Sepay Payment: Privilege escalation or authentication bypass
LearnPress – Sepay Payment is affected by privilege escalation or authentication bypass. Exposure depends on how the affected operation is made reachable by the site. A successful request can grant permissions or access that the caller should not possess. The published affected range is <= 4.0.0.
4.0.1
CVE7.5
NVDPending