CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-33707 — Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, th...

·Source: NIST NVD

Updated:

Executive Summary

Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, the default password reset mechanism generates tokens using sha1($email) with no random component, no expiration, and no rate limiting. An attacker who knows a user's email can compute the reset token and change the victim's password without authentication. This vulnerability is fixed in 1.11.38 and 2.0.0-RC.3.

Analysis

Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, the default password reset mechanism generates tokens using sha1($email) with no random component, no expiration, and no rate limiting. An attacker who knows a user's email can compute the reset token and change the victim's password without authentication. This vulnerability is fixed in 1.11.38 and 2.0.0-RC.3. CVSS Score: 9.4. Published: 2026-04-10T19:16:23.950.

Indicators of Compromise (1)

CVE (1)
CVE-2026-33707
Source Attribution

Originally published by NIST NVD on Apr 10, 2026. Verified by: NIST.

Related Threats