CVE-2026-31940
High Severity
Description
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, in main/lp/aicc_hacp.php, user-controlled request parameters are directly used to s...
Related Vulnerabilities
- CVE-2026-4156: ChargePoint Home Flex OCPP getpreq Stack-based Buffer Overflow Remote Code Execution Vulnerability. HIGH
- CVE-2026-35661: OpenClaw before 2026.3.25 contains an authorization bypass vulnerability in Telegram callback query MEDIUM
- CVE-2026-34727: Vikunja has TOTP Two-Factor Authentication Bypass via OIDC Login Path HIGH
- CVE-2026-5507: When restoring a session from cache, a pointer from the serialized session data is used in a free op MEDIUM
- CVE-2026-4157: ChargePoint Home Flex revssh Service Command Injection Remote Code Execution Vulnerability. This vul HIGH
Related Coverage
Threat Actors