An information disclosure vulnerability in Koollab LMS allowed an authenticated learner
to obtain correct quiz answers from the course status endpoint without
completing the assessment legitimately, compromising the integrity of
assessments.
to obtain correct quiz answers from the course status endpoint without
completing the assessment legitimately, compromising the integrity of
assessments.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 29 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Three Learning
Three Learning koollab Lms |
|
| Weaknesses | CWE-200 | |
| Vendors & Products |
Three Learning
Three Learning koollab Lms |
|
| Metrics |
ssvc
|
Wed, 29 Jul 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An information disclosure vulnerability in Koollab LMS allowed an authenticated learner to obtain correct quiz answers from the course status endpoint without completing the assessment legitimately, compromising the integrity of assessments. | |
| Title | Information disclosure vulnerability | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CSA
Published:
Updated: 2026-07-29T14:22:33.939Z
Reserved: 2026-07-16T02:35:54.249Z
Link: CVE-2026-63240
Updated: 2026-07-29T14:22:25.606Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-29T15:09:59Z
Weaknesses