CVE-2021-24184
Several AJAX endpoints in the Tutor LMS – eLearning and online course solution WordPress plugin before 1.7.7 were unprotected, allowing students to modify course information and elevate their privileges among many other actions.
Date published : 2021-04-05
https://wpscan.com/vulnerability/5e85917c-7a58-49cb-b8b3-05aa18ffff3e
