The Sensei LMS WordPress plugin before 4.24.2 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak email templates.
id: CVE-2024-7786
info:
name: Sensei LMS < 4.24.2 - Email Template Leak
author: s4e-io
severi
...