CYBERHAWK / CVE / CVE-2026-33698

CVE-2026-33698

Chamilo LMS

CRITICAL CVSS 9.8 oss

The flaw

Chained attack enables PHP code execution via main/install/ directory

What to do

Update to 1.11.38 and remove install directory

▸ Scan my repo for CVE-2026-33698

References

First seen 2026-04-17 · Tracked by PickBits CyberHawk · Weekly CVE digest