PT-2026-27940 · Themeum · Tutor Lms Pro

Published

2026-03-25

·

Updated

2026-03-29

·

CVE-2026-25406

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Themeum Tutor LMS Pro versions prior to 3.9.4
Description An authentication bypass issue exists in Themeum Tutor LMS Pro, allowing authentication abuse. The issue involves using an alternate path or channel to circumvent normal authentication procedures.
Recommendations Update Themeum Tutor LMS Pro to a version later than 3.9.4.

Fix

Authentication Bypass Using an Alternate Path or Channel

Weakness Enumeration

Related Identifiers

CVE-2026-25406

Affected Products

Tutor Lms Pro