Unauthorized Course Deletion in ClassroomIO by ClassroomIO
CVE-2025-65669
Currently unrated
What is CVE-2025-65669?
A vulnerability has been identified in ClassroomIO version 0.1.13 that allows student accounts to delete courses without proper authorization. This issue arises from a lack of authentication checks on the Explore page, enabling unauthorized users to bypass restrictions that are intended for administrative access only. This security flaw poses significant risks as it undermines the integrity and structure of course management within the platform.
