← לוח פגיעויות

CVE-2026-3007

בינונית 5.4

תיאור (מקור, אנגלית)

Successful exploitation of the stored cross-site scripting (XSS) vulnerability could allow an attacker to execute arbitrary JavaScript on any user account that has access to Koollab LMS’ courselet feature.

מדדים

CVSS 3.1
5.4 (MEDIUM) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
EPSS — סבירות ניצול
0% (אחוזון 000) נכון ל-29/7/2026
CWE
CWE-79

קישורים