CVE-2026-82535

Source
https://cve.org/CVERecord?id=CVE-2026-82535
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-82535.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-82535
Aliases
  • GHSA-m3wr-p8wj-jmf6
Published
2026-09-11T17:09:37Z
Modified
2026-09-12T03:47:53Z
Severity
  • 5.3 (Medium) CVSS_V4 - CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N CVSS Calculator
Summary
Chamilo LMS Stored XSS via Survey Answer Submission in reporting.php
Details

Chamilo LMS before 1.11.42 and 3.0.0 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious script payloads into survey answers by computing deterministic invitation codes and bypassing authorization checks in the survey submission endpoint. Attackers can submit crafted answers containing unescaped HTML rendered in reporting views to execute arbitrary scripts in the browser sessions of teachers or administrators, enabling persistent backdoor account creation by exploiting the victim's authenticated session.

Database specific
{
    "cna_assigner": "VulnCheck",
    "cwe_ids": [
        "CWE-79"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/82xxx/CVE-2026-82535.json"
}
References

Affected packages

Git / github.com/chamilo/chamilo-lms

Affected ranges

Type
GIT
Repo
https://github.com/chamilo/chamilo-lms
Events
Database specific
Show details
{
    "extracted_events": [
        {
            "introduced": "1.11.0"
        },
        {
            "last_affected": "1.11.40"
        },
        {
            "introduced": "2.0.0"
        },
        {
            "last_affected": "2.0.3"
        }
    ],
    "source": "AFFECTED_FIELD"
}

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-82535.json"