PT-2026-5369 · Unknown · Polarlearn

Jvr2022

·

Publicado

2026-01-29

·

Atualizado

2026-01-30

·

CVE-2026-25126

CVSS v3.1

7.1

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
Name of the Vulnerable Software and Affected Versions PolarLearn versions prior to 0-PRERELEASE-15
Description PolarLearn is a free and open-source learning program. The POST /api/v1/forum/vote API route trusts the direction value within the JSON body without runtime validation. TypeScript types are not enforced during runtime, allowing an attacker to send arbitrary strings, such as "x", as the direction parameter. The VoteServer component interprets any value other than "up" or null as a downvote, persisting the invalid value in votes data. This can be used to bypass intended business logic.
Recommendations Update to version 0-PRERELEASE-15 or later.

Exploit

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-25126
GHSA-GHPX-5W2P-P3QP

Produtos afetados

Polarlearn