CVE-2026-8637: Lenovo Lanschool Classic

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A potential uncontrolled search path vulnerability was reported in the LanSchool Classic client application that could allow a local authenticated user to execute arbitrary code with elevated privileges.

Affected products

  • Lenovo Lanschool Classic: before 9.3.1.30 (fixed in 9.3.1.30)

Published 2026-06-10. Last modified 2026-06-17.