CVE-2026-31940
High Severity
Description
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, in main/lp/aicc_hacp.php, user-controlled request parameters are directly used to s...
Related Vulnerabilities
- CVE-2026-4155: ChargePoint Home Flex Inclusion of Sensitive Information in Source Code Information Disclosure Vulne HIGH
- CVE-2026-34942: Wasmtime: Panic when transcoding misaligned utf-16 strings MEDIUM
- CVE-2026-34988: Wasmtime has data leakage between pooling allocator instances MEDIUM
- CVE-2026-5460: A heap use-after-free exists in wolfSSL's TLS 1.3 post-quantum cryptography (PQC) hybrid KeyShare pr MEDIUM
- CVE-2026-23900: Various stored XSS vulnerabilities in the maps- and icon rendering logic in Phoca Maps component 5.0 MEDIUM
Related Coverage
Threat Actors