CRAC Learning - Tech@cracbotDisclosure
The post briefly discloses CVE‑2025‑59543, noting its critical score and that it causes stored XSS in Chamilo before version 1.11.34, without providing exploit or remediation details.
0day Signal@0dayPublishingDisclosure
The tweet reports CVE‑2025‑59543 as an XSS‑based account takeover in Chamilo, sharing a PoC and a link, but provides no evidence of active exploitation, patches, or debunking.
CVE@CVEnewDisclosure
The text announces a stored XSS vulnerability in Chamilo before version 1.11.34, providing concise technical details without mentioning PoC, exploit code, or patches.
The Hacker Wire@TheHackerWireDisclosure
The post announces a critical stored XSS flaw in Chamilo (CVE‑2025‑59543) affecting versions prior to 1.11.34, providing basic technical details but no PoC, exploit, or patch.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
The post announces CVE-2025-59543, identifying an account takeover flaw via stored XSS in Chamilo's course description without providing any PoC, exploit, or patch details.
CVEFind.com@CveFindComDisclosure
The post discloses that Chamilo LMS versions before 1.11.34 contain a stored XSS vulnerability enabling JavaScript execution on other users, and recommends applying the fixed version to mitigate the risk.