CVE-2026-89081

CVE-2026-89081 published: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search' parameter in all versions up to, and including, 4.0.8 due to insufficient input sanitization and output escaping. This...

View full NVD advisory → ← Back to CVE watch