Medium
CVSS 5.3
Overview
The Sensei LMS WordPress plugin before 4.24.4 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak sensei_email and sensei_message Information.
The Sensei LMS WordPress plugin before 4.24.4 does not properly protect some it...
The Sensei LMS WordPress plugin before 4.24.4 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak sensei_email and sensei_message Information.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: