CVE-2025-66447
Info Severity
Description
Chamilo LMS is a learning management system. From 1.11.0 to 2.0-beta.1, anyone can trigger a malicious redirect through the use of the redirect parameter to /log...
Related Vulnerabilities
- CVE-2026-4664: The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to authentication bypass in MEDIUM
- CVE-2026-40185: TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the HIGH
- CVE-2026-6016: A vulnerability was found in Tenda AC9 15.03.02.13. The affected element is the function decodePwd o HIGH
- CVE-2026-40258: gramps-webapi: Zip Slip Path Traversal in Media Archive Import CRITICAL
- CVE-2026-33092: Local privilege escalation due to improper handling of environment variables. The following products HIGH
Related Coverage
Threat Actors