Uncanny Groups For Learndash Uncannyowl Uncanny Groups For Learndash

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Uncannyowl Uncanny Groups For Learndash.

By the Year

In 2026 there have been 0 vulnerabilities in Uncannyowl Uncanny Groups For Learndash. Uncanny Groups For Learndash did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 0 0.00
2024 2 4.95

It may take a day or so for new Uncanny Groups For Learndash vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Uncannyowl Uncanny Groups For Learndash Security Vulnerabilities

Uncanny Groups REST API Add User Capability Check Bypass (<=6.1.0.1)
CVE-2024-8350 2.7 - Low - September 25, 2024

The Uncanny Groups for LearnDash plugin for WordPress is vulnerable to user group add due to a missing capability check on the /wp-json/ulgm_management/v1/add_user/ REST API endpoint in all versions up to, and including, 6.1.0.1. This makes it possible for authenticated attackers, with group leader-level access and above, to add users to their group which ultimately allows them to leverage CVE-2024-8349 and gain admin access to the site.

AuthZ

Uncanny Groups for LearnDash: Privilege Escalation v6.1.0.1
CVE-2024-8349 7.2 - High - September 25, 2024

The Uncanny Groups for LearnDash plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 6.1.0.1. This is due to the plugin not properly restricting what users a group leader can edit. This makes it possible for authenticated attackers, with group leader-level access and above, to change admin account email addresses which can subsequently lead to admin account access.

AuthZ

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Uncannyowl Uncanny Groups For Learndash or by Uncannyowl? Click the Watch button to subscribe.

Uncannyowl
Vendor

subscribe