Security Advisory

CVE-2025-66447

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-10 17:22:32
Last updated 2026-04-14 14:12:56
Assigner GitHub_M
State PUBLISHED

Description

Chamilo LMS is a learning management system. From 1.11.0 to 2.0-beta.1, anyone can trigger a malicious redirect through the use of the redirect parameter to /login. This vulnerability is fixed in 2.0-beta.2.