An information disclosure vulnerability in Koollab LMS allowed an authenticated learner
to obtain correct quiz answers from the course status endpoint without
completing the assessment legitimately, compromising the integrity of
assessments.
Metrics
Affected Vendors & Products
References
History
Wed, 29 Jul 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Three Learning
Three Learning koollab Lms |
|
| Weaknesses | CWE-200 | |
| Vendors & Products |
Three Learning
Three Learning koollab Lms |
|
| Metrics |
ssvc
|
Wed, 29 Jul 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An information disclosure vulnerability in Koollab LMS allowed an authenticated learner to obtain correct quiz answers from the course status endpoint without completing the assessment legitimately, compromising the integrity of assessments. | |
| Title | Information disclosure vulnerability | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: CSA
Published:
Updated: 2026-07-29T14:22:33.939Z
Reserved: 2026-07-16T02:35:54.249Z
Link: CVE-2026-63240
Updated: 2026-07-29T14:22:25.606Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-29T15:09:59Z