CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2026-13332

N/A
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2026-07-27
Last Modified2026-07-27
Data SourcesNVD

Vulnerability Description

The Masteriyo LMS WordPress plugin before 2.3.1 does not correctly verify authorization on an unauthenticated AJAX action used to clear user sessions, allowing unauthenticated attackers to terminate the active sessions (force-logout) of any user on the site, including administrators.

Affected Platforms (CPE)

No CPE configurations currently published for this record.

References & Advisories

相關漏洞威脅