PT-2026-5369 · Unknown · Polarlearn

Jvr2022

·

Published

2026-01-29

·

Updated

2026-01-30

·

CVE-2026-25126

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N
Name of the Vulnerable Software and Affected Versions PolarLearn versions prior to 0-PRERELEASE-15
Description PolarLearn is a free and open-source learning program. The POST /api/v1/forum/vote API route trusts the direction value within the JSON body without runtime validation. TypeScript types are not enforced during runtime, allowing an attacker to send arbitrary strings, such as "x", as the direction parameter. The VoteServer component interprets any value other than "up" or null as a downvote, persisting the invalid value in votes data. This can be used to bypass intended business logic.
Recommendations Update to version 0-PRERELEASE-15 or later.

Exploit

Fix

RCE

Weakness Enumeration

Related Identifiers

CVE-2026-25126
GHSA-GHPX-5W2P-P3QP

Affected Products

Polarlearn