CVE-2020-8615

Source
https://cve.org/CVERecord?id=CVE-2020-8615
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-8615.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-8615
Published
2020-02-04T20:15:14.933Z
Modified
2026-03-15T22:38:26.691798Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N CVSS Calculator
Summary
[none]
Details

A CSRF vulnerability in the Tutor LMS plugin before 1.5.3 for WordPress can result in an attacker approving themselves as an instructor and performing other malicious actions (such as blocking legitimate instructors).

References

Affected packages

Git /

Affected ranges

Database specific

unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "1.5.3"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-8615.json"