OpenLearnX is an open-source, decentralized learning and assessment platform. Prior to version 2.0.3, a remote code execution (RCE) vulnerability was identified in the OpenLearnX code execution environment, allowing sandbox escape and arbitrary command execution. This issue has been patched in version 2.0.3.
References
Configurations
History
29 May 2026, 14:54
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Th30d4y
Th30d4y openlearnx |
|
| CPE | cpe:2.3:a:th30d4y:openlearnx:2.0.1:*:*:*:*:node.js:*:* | |
| References | () https://github.com/th30d4y/OpenLearnX/commit/14765d7d1856d564747c55c5412e2f38feab079e - Patch | |
| References | () https://github.com/th30d4y/OpenLearnX/releases/tag/v2.0.3-security-fix - Release Notes | |
| References | () https://github.com/th30d4y/OpenLearnX/security/advisories/GHSA-8h25-q488-4hxw - Vendor Advisory |
08 May 2026, 04:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-08 04:16
Updated : 2026-05-29 14:54
NVD link : CVE-2026-41900
Mitre link : CVE-2026-41900
CVE.ORG link : CVE-2026-41900
JSON object : View
Products Affected
th30d4y
- openlearnx
