Unrated severityNVD Advisory· Published Sep 2, 2026
CVE-2026-81194
CVE-2026-81194
Description
The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.46 does not properly verify authorization when retrieving order line-item data, allowing any authenticated user including Subscribers to read other instructors' course sales records by supplying another user's identifier.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <3.7.46
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.