This issue affects Academy LMS Pro: from n/a before 3.5.2.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress Academy LMS Pro Plugin to the latest available version (at least 3.5.2).
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 26 Jun 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Kodezen
Kodezen academy Lms Wordpress Wordpress wordpress |
|
| Vendors & Products |
Kodezen
Kodezen academy Lms Wordpress Wordpress wordpress |
Wed, 17 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 16 Jun 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unrestricted Upload of File with Dangerous Type vulnerability in Kodezen LLC Academy LMS Pro allows Upload a Web Shell to a Web Server. This issue affects Academy LMS Pro: from n/a before 3.5.2. | |
| Title | WordPress Academy LMS Pro plugin < 3.5.2 - Arbitrary File Upload vulnerability | |
| Weaknesses | CWE-434 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-17T10:35:55.123Z
Reserved: 2026-04-07T10:48:50.116Z
Link: CVE-2026-39598
Updated: 2026-06-17T10:35:50.000Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-26T07:45:16Z