CVE-2026-33737 - Chamilo LMS has an XML External Entity (XXE) Injection
CVE ID :CVE-2026-33737
Published : April 10, 2026, 7:16 p.m. | 4 hours, 52 minutes ago
Description :Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, multiple fil...
Related Vulnerabilities
- CVE-2026-31940: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, in main/lp/aicc_hacp.p HIGH
- CVE-2026-31939: Chamilo LMS is a learning management system. Prior to 1.11.38, there is a path traversal in main/exe HIGH
- CVE-2026-32930: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, an Insecure Direct Obj HIGH
- CVE-2026-6028: A security vulnerability has been detected in Totolink A7100RU 7.4cu.2313_b20191024. Impacted is the CRITICAL
- CVE-2026-33707: Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, the default password r CRITICAL
Related Coverage
Threat Actors