CVE-2026-3007
EUVD-2026-2517023.04.2026, 04:16
Successful exploitation of the stored cross-site scripting (XSS) vulnerability could allow an attacker to execute arbitrary JavaScript on any user account that has access to Koollab LMS’ courselet feature.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.