CREATIVEITEM Academy LMS (Learning Management System) 6.1

CPE Details

CREATIVEITEM Academy LMS (Learning Management System) 6.1
6.1
2023-08-07
12h09 +00:00
2023-08-07
12h12 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:creativeitem:academy_lms:6.1:*:*:*:*:*:*:*

Informations

Vendor

creativeitem

Product

academy_lms

Version

6.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2025-56749 2025-10-15 00h00 +00:00 Creativeitem Academy LMS up to and including 6.14 uses a hardcoded default JWT secret for token signing. This predictable secret allows attackers to forge valid JWT tokens, leading to authentication bypass and unauthorized access to any user account.
9.4
Critical