CVE-2026-63235
LOW SEVERITYCVSS Score & Metrics
Base Score
3.7 / 10
Vector String
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Vulnerability Description
An improper access control vulnerability in Koollab LMS
allowed an
unauthenticated attacker to forcibly terminate the session of any user given
their email address via the login kickout endpoint, resulting in a denial of
service.
allowed an
unauthenticated attacker to forcibly terminate the session of any user given
their email address via the login kickout endpoint, resulting in a denial of
service.
Vulnerability Details
Published Date
Last Modified
Source
NVD
Vendor
Three Learning
Product
Koollab LMS
Discussion (0)
Add Comment
No comments yet. Be the first!