CVE-2026-63228

An unrestricted image upload vulnerability in Koollab LMS allowed an authenticated attacker to upload malicious content disguised as an image file via the feedback mail registration endpoint, potentially enabling further attacks on the server.
Configurations

No configuration.

History

No history.

Information

Published : 2026-07-29 07:16

Updated : 2026-07-30 16:54


NVD link : CVE-2026-63228

Mitre link : CVE-2026-63228

CVE.ORG link : CVE-2026-63228


JSON object : View

Products Affected

No product.

CWE
CWE-434

Unrestricted Upload of File with Dangerous Type