HarborGuard / CVE
Back to search
CRITICALCVE-2026-2446Published Modified CNA WPScan

CVE-2026-2446: Powerpack for LearnDash < 1.3.0 - Unauthenticated Arbitrary Option Update

The PowerPack for LearnDash WordPress plugin before 1.3.0 does not have authorization and CRSF checks in an AJAX action, allowing unauthenticated users to update arbitrary WordPress options (such as default_role etc) and create arbitrary admin users

Metrics

CVSS v3.1
9.8
Severity
CRITICAL
Fixed in
1.3.0
Affected Products
1

Fix available

1.3.0
Affected packages
  • Unknown / PowerPack for LearnDash
    < 1.3.0 (from 0)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References