Remote Code Execution Vulnerability in OpenLearnX Learning Platform
CVE-2026-41900
8.8HIGH
Key Information:
- Vendor
Th30d4y
- Status
- Vendor
- CVE Published:
- 8 May 2026
Badges
๐พ Exploit Exists๐ก Public PoC
What is CVE-2026-41900?
OpenLearnX, an open-source decentralized learning and assessment platform, has a critical vulnerability in its code execution environment. This vulnerability enables an attacker to escape a sandboxed environment, leading to arbitrary command execution and potential unauthorized control over the system. The issue has been addressed in version 2.0.3, and users are encouraged to update to this version immediately to mitigate risks.
Affected Version(s)
OpenLearnX < 2.0.3
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
