CVE-2026-41900
OpenLearnX has Critical Remote Code Execution Through Python Sandbox Escape via Code Execution Environment
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 8.8EPSS 0.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
08 may 2026Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
OpenLearnX is an open-source, decentralized learning and assessment platform. Prior to version 2.0.3, a remote code execution (RCE) vulnerability was identified in the OpenLearnX code execution environment, allowing sandbox escape and arbitrary command execution. This issue has been patched in version 2.0.3.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Productos afectados
th30d4y · OpenLearnX¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →