LearnDash Instructor Role · Sep 07, 2026, 07:53 AM UTC
Cleanzip662 entriescrc-verifiedjavascriptcsspng
ZIP
6.93 MB
package size
Analysis
6 checks · 0 flagged
ClamAV 1.5.4 signature scan
3,628,051 signatures · db v28115
Undetected
ClamAV PUA heuristics
no unwanted applications
Undetected
Archive integrity
CRC verified for every entry
Valid
Path traversal (Zip Slip)
no entry escapes the extraction directory
Undetected
Encrypted content
all entries readable and scanned
None
Executable binaries
no .exe / .dll / .so / script binaries
None
Package
Plugin header
Name
Instructor Role
Version
5.10.4
Version check
Match
package and product page both state 5.10.4
Author
LearnDash
Author URI
https://learndash.com
Project URI
https://www.learndash.com/instructor-role
Description
This extension adds a user role 'Instructor' into your WordPress website and provides capabilities to create courses content and track student progress in your LearnDash LMS.
Individual filenames are withheld. Each entry shows its type, its folder within the package and its own SHA-256.
JSON · modules/media
baf0da1589cec4fe…
986.0 KB
JS · blocks/build/course-reports
47cf753f4b09dff3…
888.3 KB
JS · blocks/build/course-reports
dfd816154abae57d…
886.8 KB
JS · blocks/build/commissions
47dfe3b110da25ce…
843.1 KB
JS · blocks/build/commissions
b63fd639ec8f009f…
841.7 KB
JS · blocks/build/dashboard-overview
8df78d248dfe1d8b…
692.0 KB
JS · blocks/build/dashboard-overview
54e8002a65e07308…
689.9 KB
JS · blocks/build
5019a1d228b497b6…
665.5 KB
Code signals
5 present
Observations, not findings. Every construct below appears in ordinary, legitimate plugins — they are listed so you can judge for yourself. Only ClamAV decides this package's verdict.
new Function()
Builds a function from a string
Code execution28
gzinflate
Decompresses a string in memory
Obfuscation1
curl_exec
Makes an outbound HTTP request
Remote request1
unserialize
Unsafe when given untrusted input
Deserialization1
eval (JavaScript)
Executes a string as code
Code execution1
Referenced hosts
20 distinct
Domains appearing in the package source. Most are documentation links or CDNs; their presence is not evidence the package contacts them.