What is CVE-2026-63232?
CVE-2026-63232 is a SQL injection and unsafe deserialization vulnerability in Koollab LMS. An authenticated attacker can exploit the assessment reinforcement endpoint to inject SQL, control data passed to unserialize(), write a webshell to a public location, and execute arbitrary code on the server. Immediate update to the latest Koollab LMS version is strongly advised.
Azərbaycanca: CVE-2026-63232 Koollab LMS platformasında aşkar edilmiş SQL injection və təhlükəli deserializasiya zəifliyidir. Doğrulanmış hücumçu assessment reinforcement endpoint-i vasitəsilə SQL injection edə, unserialize() funksiyasına nəzarət edərək ictimai qovluğa webshell yazıb serverdə ixtiyari kod icra edə bilər. Təcili olaraq Koollab LMS-i son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-89; shared vendor: Koollab
FAQ2
Does exploiting CVE-2026-63232 require the attacker to be authenticated?
Yes, exploiting CVE-2026-63232 requires the attacker to be an authenticated user, as the SQL injection is performed through the assessment reinforcement endpoint.
What type of operation can an attacker perform on the server if CVE-2026-63232 is successfully exploited?
If CVE-2026-63232 is successfully exploited, an attacker can write a webshell to a public location via the unserialize() function and execute arbitrary code on the server.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.