CYBERHAWK / CVE / CVE-2026-33707

CVE-2026-33707

Chamilo LMS

CRITICAL CVSS 9.4 oss

The flaw

Predictable password reset tokens using sha1(email)

What to do

Update to 1.11.38 and force password resets

▸ Scan my repo for CVE-2026-33707

References

First seen 2026-04-17 · Tracked by PickBits CyberHawk · Weekly CVE digest