CVE-2026-4365 | thimpress LearnPress Plugin up to 4.3.2.8 on WordPress POST delete_question_answer authorization
A vulnerability classified as critical has been found in thimpress LearnPress Plugin up to 4.3.2.8 on WordPress. Affected by this issue is the function delete_question_answer of the component POST Handler. Performing a manipulation results in missing authorization.
This vulnerability is reported as CVE-2026-4365. The attack is possible to be carried out remotely. No exploit exists.