CVE-2023-39061: Chamilo

Low severity, CVSS 3.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Cross Site Request Forgery (CSRF) vulnerability in Chamilo v.1.11 thru v.1.11.20 allows a remote authenticated privileged attacker to execute arbitrary code.

Affected products

  • Chamilo Chamilo: from 1.11, up to and including 1.11.20

Published 2023-08-21. Last modified 2026-07-09.