CVE-2026-1375 | Tutor LMS Plugin up to 3.9.5 on WordPress course_list_bulk_action resource injection
A vulnerability classified as problematic has been found in Tutor LMS Plugin up to 3.9.5 on WordPress. This affects the function course_list_bulk_action. Performing a manipulation results in improper control of resource identifiers.
This vulnerability was named CVE-2026-1375. The attack may be initiated remotely. There is no available exploit.