Medium severity4.3NVD Advisory· Published Feb 3, 2023· Updated Jun 17, 2026
CVE-2022-47130
CVE-2022-47130
Description
A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows a discount coupon to be arbitrarily created if an attacker with administrative privileges interacts on the CSRF page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Academy LMS/Academy LMSdescription
- Range: <5.10
Patches
Vulnerability mechanics
References
3- xpsec.co/blog/academy-lms-5-10-coupon-csrfnvdExploitThird Party Advisory
- portswigger.net/web-security/csrfnvdTechnical DescriptionThird Party Advisory
- www.linkedin.com/in/xvinicius/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.