CVE-2026-33141 | Chamilo LMS up to 2.0.0-RC.2 REST API Stats Endpoint authorization
A vulnerability, which was classified as problematic, has been found in Chamilo LMS up to 2.0.0-RC.2. This affects an unknown function of the component REST API Stats Endpoint. The manipulation leads to authorization bypass.
This vulnerability is listed as CVE-2026-33141. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.