GHSA-3xmg-78j5-xfw9MediumCVSS 6.1

chamilo-lms v1.11.14 is affected by a Cross Site Scripting (XSS) vulnerability in /plugin...

Published
December 2, 2021
Last Modified
July 5, 2026

🔗 CVE IDs covered (1)

📋 Description

chamilo-lms v1.11.14 is affected by a Cross Site Scripting (XSS) vulnerability in /plugin/jcapture/applet.php if an attacker passes a message hex2bin in the cookie.

🔗 References (6)