CVE-2026-104723 - LifterLMS <= 10.2.1 - Authenticated (Custom+) PHP Object Injection via 'custom' Lesson Data
CVE ID :CVE-2026-104723 Published : Oct. 10, 2026, 6:16 a.m. | 1 hour, 13 minutes ago Description :The LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 10.2.1 via deserialization of...