CVE-2026-104049 | Academy LMS Plugin up to 3.x on WordPress REST API Routes authorization
A vulnerability was found in Academy LMS Plugin up to 3.x on WordPress. It has been classified as problematic. Affected by this vulnerability is an unknown functionality of the component REST API Routes. Performing a manipulation results in authorization bypass.
This vulnerability is cataloged as CVE-2026-104049. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More