2026-03-01 · 2 min · BitNinja Team

SQL Injection Vulnerability in Tutor LMS Plugin

The Tutor LMS plugin for WordPress has a serious security flaw. This vulnerability, tracked as CVE-2025-13673, allows attackers to exploit SQL injection through the couponcode parameter. This issue affects all versions up to and including 3.9.6. In this blog, we will discuss w...

SQL Injection Vulnerability in Tutor LMS Plugin

← All postsPricingSolutions