Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p92f-pg8m-v46g

Опубликовано: 29 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.1

Описание

An insecure direct object reference vulnerability in Koollab LMS allowed an authenticated user to query the course completion progress of any other user without authorisation, disclosing private learning progress information.

An insecure direct object reference vulnerability in Koollab LMS allowed an authenticated user to query the course completion progress of any other user without authorisation, disclosing private learning progress information.

EPSS

Процентиль: 4%
0.0014
Низкий

3.1 Low

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 3.1
nvd
14 дней назад

An insecure direct object reference vulnerability in Koollab LMS allowed an authenticated user to query the course completion progress of any other user without authorisation, disclosing private learning progress information.

EPSS

Процентиль: 4%
0.0014
Низкий

3.1 Low

CVSS3

Дефекты

CWE-639