-
Notifications
You must be signed in to change notification settings - Fork 81
Description
Dear Tutor LMS Team,
I hope you're doing well.
I sincerely apologize for opening a GitHub issue regarding this matter—I couldn’t find any other way to contact the team, and I genuinely need your help.
I am currently participating in a bug bounty program and have identified that one of the WordPress assets in scope is using a vulnerable version of the Tutor LMS plugin. However, despite my efforts, I have been unable to successfully reproduce the CVE-2024-10400 vulnerability.
I understand this may not be the ideal place to ask, but in order to qualify for the bounty, I need to provide a working proof of concept (PoC). I was wondering if you have a functional PoC or any guidance that could assist me in demonstrating the issue.
I would really appreciate any help you can provide. Thank you for your time and understanding!
Best regards,