Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-8h25-q488-4hxw | OpenLearnX has Critical Remote Code Execution Through Python Sandbox Escape via Code Execution Environment |
Sun, 10 May 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Th30d4y
Th30d4y openlearnx |
|
| Vendors & Products |
Th30d4y
Th30d4y openlearnx |
Fri, 08 May 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 08 May 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenLearnX is an open-source, decentralized learning and assessment platform. Prior to version 2.0.3, a remote code execution (RCE) vulnerability was identified in the OpenLearnX code execution environment, allowing sandbox escape and arbitrary command execution. This issue has been patched in version 2.0.3. | |
| Title | OpenLearnX has Critical Remote Code Execution Through Python Sandbox Escape via Code Execution Environment | |
| Weaknesses | CWE-250 CWE-284 CWE-693 CWE-78 CWE-94 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-05-08T12:54:17.267Z
Reserved: 2026-04-22T15:11:54.672Z
Link: CVE-2026-41900
Updated: 2026-05-08T12:54:13.095Z
Status : Awaiting Analysis
Published: 2026-05-08T04:16:18.710
Modified: 2026-05-08T16:08:15.570
Link: CVE-2026-41900
No data.
OpenCVE Enrichment
Updated: 2026-05-10T21:26:10Z
Github GHSA