WPFunnels Creator LMS Missing Authorization Vulnerability Allowing Access Control Misconfiguration
Vulnerability
A missing authorization vulnerability has been identified in WPFunnels Creator LMS versions through 1.1.12. This vulnerability allows for the exploitation of improperly configured access control security levels, potentially leading to unauthorized access or actions within the application.
Impact
Exploitation of this vulnerability could result in unauthorized access or actions being performed by users, bypassing the intended access control mechanisms of the application.
Added: Jan 6, 2026, 5:19 PM
Updated: Jan 6, 2026, 5:19 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
1.3exploitability
7.4remediation
0.0relevance
1.9threat
0.0urgency
2.9incentive
5.8Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
