What is CVE-2026-28145?
An Insufficient Verification of Data Authenticity vulnerability in the StylemixThemes MasterStudy LMS plugin. This flaw could allow an attacker to manipulate user state, potentially leading to unauthorized actions. Users should update the plugin to a patched version beyond 3.7.39.
Azərbaycanca: StylemixThemes şirkətinin MasterStudy LMS plaginində məlumatın həqiqiliyinin yetərsiz yoxlanması zəifliyidir. Bu boşluq təcavüzkara istifadəçi vəziyyətini manipulyasiya etməyə imkan verə bilər. Plaginin 3.7.39-a qədər olan versiyalarını təhlükəsizlik yaması ilə yeniləmək tövsiyə olunur.
FAQ2
Which plugin is affected by CVE-2026-28145?
This vulnerability affects the MasterStudy LMS plugin by StylemixThemes.
What is the solution for CVE-2026-28145 in the MasterStudy LMS plugin?
Users should update the plugin to a version beyond 3.7.39.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.