The LifterLMS WordPress plugin before 10.0.10 does not perform a capability check in one of its select2 query AJAX handlers, only verifying that the user is logged in, allowing any authenticated user with subscriber-level access to read the titles of internal post types such as coupon codes by supplying the post type.
We have discovered 1,844 live websites that are affected by CVE-2026-14231.
| Product | |
| Category | Wordpress Plugins |
| Vulnerable Domains | 1,844 live websites (100% of Lifterlms install base) |
| Vulnerable Versions |
|
| Vulnerable Versions Count | 63 versions ( 100% of all versions) |
| 842 websites | |
| 129 websites | |
| 106 websites | |
| 70 websites | |
| 60 websites | |
| 52 websites | |
| 49 websites | |
| 41 websites | |
| 40 websites | |
| 33 websites |
| .com | 941 websites |
| .org | 172 websites |
| .fi | 61 websites |
| .de | 55 websites |
| .net | 48 websites |
| .co.uk | 41 websites |
| .ru | 36 websites |
| .ca | 30 websites |
| .nl | 29 websites |
| .com.au | 29 websites |
| Domain | Country | Rank | Contacts |
|---|---|---|---|
| *****.com | **,*** | ||
| ***.org | ***,*** | ||
| ********************.org | ***,*** | ||
| *******.com | ***,*** | ||
| ********.com | ***,*** | ||
| *****************.nl | ***,*** | ||
| **************.org | ***,*** | ||
| **************.com | ***,*** | ||
| **************.com | ***,*** | ||
| ******************.com | ***,*** |
FAQ