CVE-2025-60200
- EPSS 0.06%
- Veröffentlicht 06.11.2025 15:54:59
- Zuletzt bearbeitet 20.01.2026 15:17:31
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThimPress LearnPress Export Import learnpress-import-export allows PHP Local File Inclusion.This issue affects LearnPress Export ...
CVE-2025-49992
- EPSS 0.06%
- Veröffentlicht 22.10.2025 14:32:21
- Zuletzt bearbeitet 20.01.2026 15:16:47
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress LearnPress Export Import learnpress-import-export allows Reflected XSS.This issue affects LearnPress Export Import: from n/a through <= 4....
CVE-2024-9609
- EPSS 1.39%
- Veröffentlicht 15.11.2024 05:15:06
- Zuletzt bearbeitet 19.11.2024 21:28:42
The LearnPress Export Import – WordPress extension for LearnPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'learnpress_import_form_server' parameter in all versions up to, and including, 4.0.4 due to insufficient i...
CVE-2024-32588
- EPSS 1.14%
- Veröffentlicht 18.04.2024 09:15:12
- Zuletzt bearbeitet 21.11.2024 09:15:14
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThimPress LearnPress Export Import allows Reflected XSS.This issue affects LearnPress Export Import: from n/a through 4.0.3.
CVE-2024-31241
- EPSS 0.2%
- Veröffentlicht 07.04.2024 18:15:09
- Zuletzt bearbeitet 21.11.2024 09:13:06
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ThimPress LearnPress Export Import.This issue affects LearnPress Export Import: from n/a through 4.0.3.