Skip to content
Noroxi

classroomio records

6 published records for vendor classroomio.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • An issue was discovered in classroomio 0.1.13.

    CriticalCVSS 9.1Proof of conceptEPSS 0%

    classroomio · classroomioNov 26, 2025

  • An issue in ClasroomIO before v.0.2.6 allows a remote attacker to escalate privileges via the endpoints /api/verify and /rest/v1/profile

    HighCVSS 8.1No exploitEPSS 0%

    classroomio · classroomioMar 11, 2026

  • Insecure Direct Object Reference (IDOR) in classroomio 0.1.13 allows unauthorized share and invite access to course settings.

    HighCVSS 7.5Proof of conceptEPSS 0%

    classroomio · classroomioNov 26, 2025

  • Stored Cross site scripting (XSS) vulnerability in Classroomio LMS 0.1.13 allows authenticated attackers to execute arbitrary code via craft

    MediumCVSS 5.4Proof of conceptEPSS 0%

    classroomio · classroomioNov 26, 2025

  • Stored Cross site scripting (XSS) vulnerability in Classroomio LMS 0.1.13 allows authenticated attackers to execute arbitrary code via craft

    MediumCVSS 5.4Proof of conceptEPSS 0%

    classroomio · classroomioNov 26, 2025

  • An Insecure Direct Object Reference (IDOR) in classroomio 0.1.13 allows students to access sensitive admin/teacher endpoints by manipulating

    MediumCVSS 4.3Proof of conceptEPSS 0%

    classroomio · classroomioNov 26, 2025