Chamilo LMS — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
4
occurrences
First Seen
April 11, 2026
Last Seen
July 21, 2026

Chamilo LMS is a technology platform tracked across 2 threat clusters and 4 intelligence report mentions on ThreatCluster. First observed April 11, 2026; most recent activity July 21, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • CVE-2026-39878 - Chamilo stored XSS via user registration leads to admin account takeover Latest Vulnerabilities / 16h CVE ID : CVE-2026-39878 Published : July 20, 2026, 6:16 p.m. 39 minutes ago Description : Chamilo LMS versions 1.11.38 and earlier contain a stored cross-site scripting vulnerability in the user registration form that allows any unauthenticated attacker to execute arbitrary JavaScript in an administrator's browser session, leading to full platform admin account takeover. This ha — cvefeed.io · July 21, 2026
  • CVE-2026-39878 - Exploits & Severity — Feedly · July 21, 2026
  • CVE-2026-33707 TheHackerWire / 18h Attack Vector How the vulnerability can be exploited Network Scope Impact beyond vulnerable component Unchanged — www.thehackerwire.com · April 11, 2026
  • CVE-2026-33707 - Exploits & Severity — Feedly · April 11, 2026

CVSS v3.1 Breakdown