CVE-2026-14231: CWE-200 Information Exposure in LifterLMS
CVE-2026-14231 is an information exposure vulnerability in the LifterLMS WordPress plugin versions before 10.0.10. The plugin fails to perform proper capability checks in one of its AJAX handlers, allowing any authenticated user with subscriber-level access to read titles of internal post types such as coupon codes. This issue arises because the handler only verifies that the user is logged in, not their permissions.
AI Analysis
Technical Summary
The LifterLMS WordPress plugin prior to version 10.0.10 contains an information exposure vulnerability (CWE-200) due to insufficient capability checks in a select2 query AJAX handler. The handler verifies only that the user is authenticated but does not check for appropriate permissions, enabling any logged-in user with subscriber-level access to retrieve titles of internal post types, including sensitive data like coupon codes. This could lead to unauthorized disclosure of internal information.
Potential Impact
An attacker with subscriber-level access can obtain titles of internal post types such as coupon codes, potentially exposing sensitive information. The vulnerability does not allow modification or deletion of data, nor does it affect availability. The impact is limited to information disclosure.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, restrict subscriber-level access where possible and monitor for unusual access patterns to internal post types. Avoid exposing sensitive internal post types to low-privilege users.
CVE-2026-14231: CWE-200 Information Exposure in LifterLMS
Description
CVE-2026-14231 is an information exposure vulnerability in the LifterLMS WordPress plugin versions before 10.0.10. The plugin fails to perform proper capability checks in one of its AJAX handlers, allowing any authenticated user with subscriber-level access to read titles of internal post types such as coupon codes. This issue arises because the handler only verifies that the user is logged in, not their permissions.
CVSS v3.1
Score 4.3medium
Affected software
LifterLMS
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The LifterLMS WordPress plugin prior to version 10.0.10 contains an information exposure vulnerability (CWE-200) due to insufficient capability checks in a select2 query AJAX handler. The handler verifies only that the user is authenticated but does not check for appropriate permissions, enabling any logged-in user with subscriber-level access to retrieve titles of internal post types, including sensitive data like coupon codes. This could lead to unauthorized disclosure of internal information.
Potential Impact
An attacker with subscriber-level access can obtain titles of internal post types such as coupon codes, potentially exposing sensitive information. The vulnerability does not allow modification or deletion of data, nor does it affect availability. The impact is limited to information disclosure.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, restrict subscriber-level access where possible and monitor for unusual access patterns to internal post types. Avoid exposing sensitive internal post types to low-privilege users.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- WPScan
- Date Reserved
- 2026-06-30T12:47:48.451Z
- State
- PUBLISHED
Threat ID: 6a6aee089c2644c7f8a7ef40
Added to database: 07/30/2026, 06:24:08 UTC
Last enriched: 08/06/2026, 17:49:31 UTC
Last updated: 09/11/2026, 22:06:31 UTC
Views: 40
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.