
CVE-2026-33710 Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, REST API keys are generated using md5(time() + (user_id * 5) - rand(10000, 10000)). The … https://www.cve.org/CVERecord?id=CVE-2026-33710
Post summary
The post announces a vulnerability in Chamilo LMS’s REST API key generation, providing technical details but no evidence of exploitation, PoC, or mitigation.

