Description
The Course Redirects for Learndash plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.4. This is due to missing nonce validation when processing form submissions on the settings page. This makes it possible for unauthenticated attackers to modify plugin settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
Published: 2025-10-11
Score: 4.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unauthorized configuration change via CSRF
Action: Upgrade Plugin
AI Analysis

Impact

The Course Redirects for Learndash plugin for WordPress contains a missing nonce validation on the settings page, which allows an unauthenticated attacker to forge a request and alter plugin settings. This is a classic CSRF flaw (CWE-352) that can affect site behavior and user experience by applying unauthorized configuration changes. The flaw does not directly expose data or execute arbitrary code, but it enables an attacker to modify settings that could lead to further exploitation or service disruption.

Affected Systems

WordPress installations that use the Course Redirects for Learndash plugin from ercbs, specifically any version up to and including 0.4. Sites that have this plugin installed and have active administrator accounts are vulnerable.

Risk and Exploitability

The CVSS score of 4.3 indicates moderate severity, while the EPSS score of less than 1% shows a very low probability of exploitation. This vulnerability is not currently listed in the CISA KEV catalog. The likely attack vector is social engineering: an attacker needs to lure a site administrator into clicking a crafted link or submitting a forged form that targets the settings page. Because the exploit requires administrator interaction and does not require privileged credentials or local network access, the overall risk is moderate but the chance of real-world exploitation is low.

Generated by OpenCVE AI on April 21, 2026 at 02:22 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Course Redirects for Learndash to a version newer than 0.4, which contains the missing nonce validation fix.
  • If an update is not immediately available, implement a nonce check on the settings page to enforce request authenticity and prevent CSRF.
  • Limit access to the plugin’s settings page to trusted administrators only and monitor configuration changes for unexpected activity.

Generated by OpenCVE AI on April 21, 2026 at 02:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 21 Oct 2025 13:15:00 +0000

Type Values Removed Values Added
First Time appeared Ercbs
Ercbs course Redirects For Learndash Plugin
Wordpress
Wordpress wordpress
Vendors & Products Ercbs
Ercbs course Redirects For Learndash Plugin
Wordpress
Wordpress wordpress

Tue, 14 Oct 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sat, 11 Oct 2025 09:45:00 +0000

Type Values Removed Values Added
Description The Course Redirects for Learndash plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.4. This is due to missing nonce validation when processing form submissions on the settings page. This makes it possible for unauthenticated attackers to modify plugin settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
Title Course Redirects for Learndash Plugin <= 0.4 - Cross-Site Request Forgery
Weaknesses CWE-352
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N'}


Subscriptions

Ercbs Course Redirects For Learndash Plugin
Wordpress Wordpress
cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2026-04-08T17:32:13.009Z

Reserved: 2025-09-12T15:44:43.342Z

Link: CVE-2025-10376

cve-icon Vulnrichment

Updated: 2025-10-14T18:31:51.141Z

cve-icon NVD

Status : Deferred

Published: 2025-10-11T10:15:42.477

Modified: 2026-04-15T00:35:42.020

Link: CVE-2025-10376

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-04-21T02:30:25Z

Weaknesses