Authentication Bypass Using an Alternate Path or Channel vulnerability in Themeum Tutor LMS Pro tutor-pro allows Authentication Abuse.This issue affects Tutor LMS Pro: from n/a through <= 3.9.4.
Subscriptions
No data.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 25 Mar 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authentication Bypass Using an Alternate Path or Channel vulnerability in Themeum Tutor LMS Pro tutor-pro allows Authentication Abuse.This issue affects Tutor LMS Pro: from n/a through <= 3.9.4. | |
| Title | WordPress Tutor LMS Pro plugin <= 3.9.4 - Broken Authentication vulnerability | |
| Weaknesses | CWE-288 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-03-25T16:14:48.521Z
Reserved: 2026-02-02T12:53:19.001Z
Link: CVE-2026-25406
No data.
Status : Received
Published: 2026-03-25T17:16:49.890
Modified: 2026-03-25T17:16:49.890
Link: CVE-2026-25406
No data.
OpenCVE Enrichment
Updated: 2026-03-25T21:44:34Z
Weaknesses