CVE-2025-52482

Publication date

2026-03-02 14:39:50

Family

GitHub_M

State

PUBLISHED

Description

Chamilo is a learning management system. Prior to version 1.11.30, a Stored XSS vulnerability exists in the glossary function, enabling all users with the Teachers role to inject JavaScript malicious code against the administrator. This issue has been patched in version 1.11.30.