CVE-2025-66447 - Chamilo LMS has validation-less redirect on login page
CVE ID :CVE-2025-66447
Published : April 10, 2026, 5:22 p.m. | 44 minutes ago
Description :Chamilo LMS is a learning management system. From 1.11.0 to 2.0-beta.1, anyone can trigger a malici...
Related Vulnerabilities
- CVE-2026-40168: Postiz is an AI social media scheduling tool. Prior to 2.21.5, the /api/public/stream endpoint is vu HIGH
- CVE-2026-33704: Chamilo LMS is a learning management system. Prior to 1.11.38, any authenticated user (including stu HIGH
- CVE-2026-32931: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an unrestricted file u HIGH
- CVE-2026-32930: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an Insecure Direct Obj HIGH
- CVE-2026-33698: Chamilo LMS is a learning management system. Prior to 1.11.38, a chained attack can enable otherwise N/A
Related Coverage
Threat Actors