Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2722▼ 6 respecto a la semana anterior
Críticas / altas1451▲ 315 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
–

16 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisMedia (4.3)0.48%—Openedx Open EDX PlatformAI18/9/202624/9/2026
Open edX Platform enables the authoring and delivery of online learning at any scale. From Aspen.1 until Ulmo and Verawood.1, openedx/core/lib/extract_archive.py uses _is_bad_path to validate safe_extractall targets by comparing resolved path strings with startswith instead of comparing path components. A course…
AplazadaMedia (6.1)0.35%—Openedx Open EDX PlatformAI18/9/202624/9/2026
Open edX Platform enables the authoring and delivery of online learning at any scale. From Redwood until Ulmo and Verawood.1, the add_additional_attributes_to_notifications function in openedx/core/djangoapps/notifications/email/utils.py assigns notification content without sanitizing discussion-title values produced…
AplazadaMedia (6.8)0.46%—Openedx Open EDX PlatformAI2/9/20269/9/2026
Open edX Platform enables the authoring and delivery of online learning at any scale. Prior to commit 00b7c3c, the endpoint accepts user-supplied files[].url, performs a server-side fetch using "requests.get(url, allow_redirects=True)". The fetched bytes are then returned inside a ZIP response. This enables SSRF with…
AplazadaAlta (7.6)0.40%—Openedx Open EDX PlatformAI2/9/20269/9/2026
Open edX Platform enables the authoring and delivery of online learning at any scale. Prior to commit 59bb6d6, the view function set_course_mode_price() at lms/djangoapps/instructor/views/instructor_dashboard.py:430 is decorated only with @login_required and performs no course-level permission check. Any authenticated…
Pendiente de análisisMedia (5.3)0.35%—Openedx Open EDX PlatformAI2/4/202624/7/2026
Open edX Platform enables the authoring and delivery of online learning at any scale. From the maple release to before the ulmo release, an unauthenticated attacker can fully bypass the email verification process by combining two issues: the OAuth2 password grant issuing tokens to inactive users (documented behavior)…
AplazadaCrítica (9.9)0.32%—Openedx Open EDX PlatformAI16/12/202517/6/2026
The Open edX Platform is a learning management platform. Prior to commit 05d0d0936daf82c476617257aa6c35f0cd4ca060, CourseLimitedStaffRole users are able to access and edit courses in studio if they are granted the role on an org rather than on a course, and CourseLimitedStaffRole users are able to list courses they…
AplazadaMedia (5.3)0.44%—Openedx Open EDX PlatformAI21/5/202517/6/2026
The Open edX Platform is a learning management platform. Prior to commit 6740e75c0fdc7ba095baf88e9f5e4f3e15cfd8ba, edxapp has no built-in protection against downloading the python_lib.zip asset from courses, which is a concern since it often contains custom grading code or answers to course problems. This potentially…
AplazadaAlta (7.1)0.33%—Edunext Open EDX LMSAI2/12/202417/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eduNEXT Open edX LMS allows Reflected XSS.This issue affects Open edX LMS: from n/a through 2.6.1.
AplazadaMedia (5.3)0.33%—Amazon S3AIOpenedx Open EDX PlatformAI25/7/202417/6/2026
The Open edX Platform is a learning management platform. Instructors can upload csv files containing learner information to create cohorts in the instructor dashboard. These files are uploaded using the django default storage. With certain storage backends, uploads may become publicly available when the uploader uses…
ModificadaMedia (6.1)2.4%—Open EDX9/6/202217/6/2026
Open edX platform before 2022-06-06 allows XSS via the "next" parameter in the logout URL.
ModificadaAlta (8.8)1.1%—Open EDX Platform18/5/202017/6/2026
Studio in Open edX Ironwood 2.5 allows CSV injection because an added cohort in Course>Instructor>Cohorts may contain a formula that is exported via the "Course>Data Downloads>Reports>Download profile info" feature.
ModificadaMedia (5.4)0.53%—Open EDX Platform18/5/202017/6/2026
Studio in Open edX Ironwood 2.5 allows users to upload SVG files via the "Content>File Uploads" screen. These files can contain JavaScript code and thus lead to Stored XSS.
ModificadaAlta (8.8)11%—Open EDX Platform18/5/202017/6/2026
Studio in Open edX Ironwood 2.5, when CodeJail is not used, allows a user to go to the "Create New course>New section>New subsection>New unit>Add new component>Problem button>Advanced tab>Custom Python evaluated code" screen, edit the problem, and execute Python code. This leads to arbitrary code execution.
ModificadaMedia (6.1)0.49%—Open EDX19/3/202017/6/2026
Open edX Ironwood.1 allows support/certificates?user= reflected XSS.
ModificadaMedia (6.1)0.41%—Open.edx Ironwood18/3/202017/6/2026
Open edX Ironwood.1 allows support/certificates?course_id= reflected XSS.
ModificadaMedia (6.5)2.0%—Open EDX19/3/201617/6/2026
lms/templates/footer-edx-new.html in Open edX edx-platform before 2015-01-29 does not properly restrict links on the password-reset page, which allows user-assisted remote attackers to discover password-reset tokens by reading a referer log after a victim navigates from this page to a social-sharing site.