CVE-2026-42163

Mahara before 25.04.5 and 26.04.0 is vulnerable to unauthorized access to internal accounts via Learning Tools Interoperability (LTI) under certain circumstances. This applies to LTI 1.1 and LTI 1.3 Advantage.
Configurations

No configuration.

History

No history.

Information

Published : 2026-08-17 22:17

Updated : 2026-08-31 20:12


NVD link : CVE-2026-42163

Mitre link : CVE-2026-42163

CVE.ORG link : CVE-2026-42163


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control