CVE-2026-16765: Codeastro Online Classroom

High severity, CVSS 7.3. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability was determined in CodeAstro Online Classroom 1.0. Affected by this issue is some unknown functionality of the file /OnlineClassroom/loginlinkadmin.php. Executing a manipulation of the argument aid can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.

Affected products

Published 2026-07-23. Last modified 2026-07-24.