Vulnerabilities
Report: Essential Guide: CVE-2026-41243 - OpenLearn's pending forum posts remain publicly readable by direct ID when moder...
CVE ID :CVE-2026-41243 Published : April 23, 2026, 2:16 a.m. | 1 hour, 11 minutes ago Description :OpenLearn is open-source educational forum software. Prior to commit 844b2a40a69d0c4911580fe501923f0b391313ab, when `safeMode` is enabled, unapproved forum posts are hidden from the public list, but the direct post-read procedure still returns the full post to anyone with the post UUID. Commit 844b2a40a69d0c4911580fe501923f0b391313ab fixes the issue. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...