OpenLearnX
- < 2.0.3
A critical authentication vulnerability has been identified in OpenLearnX versions prior to 2.0.3. This vulnerability could allow unauthorized access to user accounts under specific conditions, due to the JSON Web Token (JWT) signature verification being disabled, which could lead to an authentication bypass and account takeover.
Exploitation of this vulnerability could result in unauthorized access to user accounts, allowing an attacker to take over those accounts.
Users can upgrade to OpenLearnX version 2.0.4 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.