CVE-2025-53209: WordPress Masteriyo LMS PRO plugin <= 2.20.0 - Privilege Escalation Vulnerability
Incorrect Privilege Assignment vulnerability in Themeisle Masteriyo LMS PRO allows Privilege Escalation.
This issue affects Masteriyo LMS PRO: from n/a through 2.20.0.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Masteriyo LMS PRO pluginto a version that resolves this vulnerability.Fixed in 2.20.1
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53209?
CVE-2025-53209 has a severity rating of 9.8, categorized as critical.
How do I fix CVE-2025-53209?
To fix CVE-2025-53209, update the WordPress Masteriyo LMS PRO plugin to at least version 2.20.1.
What causes CVE-2025-53209?
CVE-2025-53209 is caused by an incorrect privilege assignment in the Themeisle Masteriyo LMS PRO plugin.
Who is affected by CVE-2025-53209?
CVE-2025-53209 affects users of the Themeisle Masteriyo LMS PRO plugin from any version to 2.20.0.
What types of attacks can be executed through CVE-2025-53209?
CVE-2025-53209 allows for privilege escalation attacks, enabling unauthorized access to higher-level user functionalities.