216.73.216.233

CVE-2026-41243

· Published 23/04/2026 02:16 · Modified 24/04/2026 14:50

Labels: CVE-2026-41243 2026-04-23CVE-2026-41243CWE-284[email protected]

Essential information

Published
23/04/2026 02:16
Modified
24/04/2026 14:50
Author
Creator
CVSS
6.9 MEDIUM (v3) 6.9 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

OpenLearn is open-source educational forum software. Prior to commit 844b2a40a69d0c4911580fe501923f0b391313ab, when `safeMode` is enabled, unapproved forum posts are hidden from the public list, but the direct post-read procedure still returns the full post to anyone with the post UUID. Commit 844b2a40a69d0c4911580fe501923f0b391313ab fixes the issue.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
openlearn / openlearn cpe:2.3:a:openlearn:openlearn:*:*:*:*:*:*:*:*

References