CVE-2026-33736 - Chamilo LMS has an Insecure Direct Object Reference (IDOR) - User Data Exposure
CVE ID :CVE-2026-33736
Published : April 10, 2026, 7:16 p.m. | 50 minutes ago
Description :Chamilo LMS is a learning management system. Prior to 2.0.0-RC.3, any authenticated user (including...
Related Vulnerabilities
- CVE-2026-35647: OpenClaw before 2026.3.25 contains an access control vulnerability where verification notices bypass MEDIUM
- CVE-2026-28704: Emocheck insecurely loads Dynamic Link Libraries (DLLs). If a crafted DLL file is placed to the same HIGH
- CVE-2026-40180: Quarkus OpenAPI Generator is Quarkus' extensions for generation of Rest Clients and server stubs gen N/A
- CVE-2026-32252: Chartbrew is an open-source web application that can connect directly to databases and APIs and use HIGH
- CVE-2026-31941: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, Chamilo LMS contains a HIGH
Related Coverage
Threat Actors