CVE-2026-81342

Published: Ago 29, 2026 Last Modified: Ago 29, 2026
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

The MasterStudy LMS WordPress Plugin WordPress plugin before 3.7.43 does not validate a redirect parameter supplied during user registration before using it, allowing unauthenticated attackers to redirect users to arbitrary external URLs.

https://wpscan.com/vulnerability/f6f89b50-3087-4fb6-ba12-93fdc1bcc9ed/