OpenLearnX is an open-source, decentralized learning and assessment platform. Prior to version 2.0.3, a remote code execution (RCE) vulnerability was identified in the OpenLearnX code execution environment, allowing sandbox escape and arbitrary command execution. This issue has been patched in version 2.0.3.
Metrics
Affected Vendors & Products
References
History
Sun, 10 May 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Th30d4y
Th30d4y openlearnx |
|
| Vendors & Products |
Th30d4y
Th30d4y openlearnx |
Fri, 08 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 08 May 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenLearnX is an open-source, decentralized learning and assessment platform. Prior to version 2.0.3, a remote code execution (RCE) vulnerability was identified in the OpenLearnX code execution environment, allowing sandbox escape and arbitrary command execution. This issue has been patched in version 2.0.3. | |
| Title | OpenLearnX has Critical Remote Code Execution Through Python Sandbox Escape via Code Execution Environment | |
| Weaknesses | CWE-250 CWE-284 CWE-693 CWE-78 CWE-94 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published: 2026-05-08T03:25:50.286Z
Updated: 2026-05-08T12:54:17.267Z
Reserved: 2026-04-22T15:11:54.672Z
Link: CVE-2026-41900
Updated: 2026-05-08T12:54:13.095Z
Status : Awaiting Analysis
Published: 2026-05-08T04:16:18.710
Modified: 2026-05-08T16:08:15.570
Link: CVE-2026-41900
No data.
ReportizFlow