Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
9.8 CRITICAL
CVE-2026-4484 — Masteriyo LMS <= 2.1.6 - Missing Authorization to Authenticated (Student+) Privilege Esca…

The Masteriyo LMS plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.1.6. This is due to the plugin allowing a user to update the user role through the…

masteriyo | Remote | Authorization
Mar 26, 2026 Apr 24, 2026
Mar 26, 2026
Apr 24, 2026
Showing 20 of 6021 Results