Masteriyo LMS
Unknown- Software type
- —
- Catalog vulnerabilities
- 5
Severity across 5 analyzed records
Verify to analyze this security profile
A short verification protects source data and prevents automated AI requests.
en
Severity across 5 analyzed records
A short verification protects source data and prevents automated AI requests.
The GCVE catalog currently lists 5 vulnerability records affecting Masteriyo LMS.
Among the 5 records analyzed by CyStack, 1 are High or Critical and 0 appear in the CISA KEV catalog.
Compare the version you run with each vulnerability and the provider guidance below. The data only includes records analyzed so far.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan
| CVE | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2026-82848Masteriyo LMS 1.3.1 - 2.3.3 - Unauthenticated Course Enrollment Disclosure | Exploitation statusPublic exploit | FixYes | Published09/09/2026 | SeverityMedium |
CVE-2026-82846Masteriyo LMS 1.18.0 - 2.3.3 - Instructor+ Stored XSS via Course Custom Fields | Exploitation statusPublic exploit | FixYes | Published09/05/2026 | SeverityMedium |
CVE-2026-19712Masteriyo LMS < 2.3.3 - Instructor+ Stored XSS via Quiz Description | Exploitation statusPublic exploit | FixYes | Published08/16/2026 | SeverityMedium |
CVE-2026-13332Masteriyo LMS < 2.3.1 - Unauthenticated Arbitrary User Session Termination (Denial of Service) | Exploitation statusPublic exploit | FixYes | Published07/27/2026 | SeverityCritical |
CVE-2026-10824Masteriyo LMS < 2.2.1 - Unauthenticated Course Progress Disclosure and Deletion | Exploitation statusPublic exploit | FixYes | Published06/25/2026 | SeverityMedium |