CVE-2026-31940
High Severity
Description
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, in main/lp/aicc_hacp.php, user-controlled request parameters are directly used to s...
Related Vulnerabilities
- CVE-2026-35598: Vikunja Missing Authorization on CalDAV Task Read MEDIUM
- CVE-2026-6038: A vulnerability was identified in code-projects Vehicle Showroom Management System 1.0. This impacts MEDIUM
- CVE-2026-3498: The BlockArt Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'clien MEDIUM
- CVE-2026-35649: OpenClaw before 2026.3.22 contains a settings reconciliation vulnerability that allows attackers to MEDIUM
- CVE-2026-24880: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Ap MEDIUM
Related Coverage
Threat Actors