{"schema_version":1,"title":"Three Learning Koollab LMS vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 17 vulnerabilities in Three Learning Koollab LMS: 0 in the last 7 days and 16 in the last 90 days, 6 of them critical and 0 exploited in the wild. The most recent, CVE-2026-63242, was published on 29 July 2026.","url":"https://junglewise.ai/threats/technologies/koollab-lms","json_url":"https://junglewise.ai/threats/technologies/koollab-lms.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/koollab-lms","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":1,"all_time":17,"critical":6,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":16,"last_365_days":17},"latest":[{"cve":"CVE-2026-63242","cvss":4.3,"slug":"cve-2026-63242-three-learning-koollab-lms-business-logic-bypass-in-scorm-commit","title":"Three Learning Koollab LMS business logic bypass in SCORM commit endpoint","severity":"medium","exploited":false,"published_at":"2026-07-29T07:16:43.68+00:00","url":"https://junglewise.ai/threats/cve-2026-63242-three-learning-koollab-lms-business-logic-bypass-in-scorm-commit"},{"cve":"CVE-2026-63241","cvss":3.1,"slug":"cve-2026-63241-three-learning-koollab-lms-idor-in-course-completion-query","title":"Three Learning Koollab LMS IDOR in course completion query","severity":"low","exploited":false,"published_at":"2026-07-29T07:16:43.567+00:00","url":"https://junglewise.ai/threats/cve-2026-63241-three-learning-koollab-lms-idor-in-course-completion-query"},{"cve":"CVE-2026-63240","cvss":4.3,"slug":"cve-2026-63240-three-learning-koollab-lms-information-disclosure-in-course","title":"Three Learning Koollab LMS information disclosure in course status endpoint","severity":"medium","exploited":false,"published_at":"2026-07-29T07:16:43.46+00:00","url":"https://junglewise.ai/threats/cve-2026-63240-three-learning-koollab-lms-information-disclosure-in-course"},{"cve":"CVE-2026-63239","cvss":5.4,"slug":"cve-2026-63239-three-learning-koollab-lms-hard-coded-aws-iam-credentials","title":"Three Learning Koollab LMS hard-coded AWS IAM credentials","severity":"medium","exploited":false,"published_at":"2026-07-29T07:16:43.343+00:00","url":"https://junglewise.ai/threats/cve-2026-63239-three-learning-koollab-lms-hard-coded-aws-iam-credentials"},{"cve":"CVE-2026-63238","cvss":6.5,"slug":"cve-2026-63238-three-learning-koollab-lms-authentication-bypass-in-2fa-endpoint","title":"Three Learning Koollab LMS authentication bypass in 2FA endpoint","severity":"medium","exploited":false,"published_at":"2026-07-29T07:16:43.237+00:00","url":"https://junglewise.ai/threats/cve-2026-63238-three-learning-koollab-lms-authentication-bypass-in-2fa-endpoint"},{"cve":"CVE-2026-63237","cvss":4.8,"slug":"cve-2026-63237-three-learning-koollab-lms-totp-2fa-bypass","title":"Three Learning Koollab LMS TOTP 2FA bypass","severity":"medium","exploited":false,"published_at":"2026-07-29T07:16:43.133+00:00","url":"https://junglewise.ai/threats/cve-2026-63237-three-learning-koollab-lms-totp-2fa-bypass"},{"cve":"CVE-2026-63236","cvss":3.7,"slug":"cve-2026-63236-three-learning-koollab-lms-improper-access-control-in-scorm-api","title":"Three Learning Koollab LMS improper access control in SCORM API","severity":"low","exploited":false,"published_at":"2026-07-29T07:16:43.027+00:00","url":"https://junglewise.ai/threats/cve-2026-63236-three-learning-koollab-lms-improper-access-control-in-scorm-api"},{"cve":"CVE-2026-63235","cvss":3.7,"slug":"cve-2026-63235-three-learning-koollab-lms-improper-access-control-in-login","title":"Three Learning Koollab LMS improper access control in login kickout endpoint","severity":"low","exploited":false,"published_at":"2026-07-29T07:16:42.923+00:00","url":"https://junglewise.ai/threats/cve-2026-63235-three-learning-koollab-lms-improper-access-control-in-login"},{"cve":"CVE-2026-63234","cvss":9.9,"slug":"cve-2026-63234-three-learning-koollab-lms-sql-injection-and-unsafe","title":"Three Learning Koollab LMS SQL injection and unsafe deserialization","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.817+00:00","url":"https://junglewise.ai/threats/cve-2026-63234-three-learning-koollab-lms-sql-injection-and-unsafe"},{"cve":"CVE-2026-63233","cvss":9.9,"slug":"cve-2026-63233-three-learning-koollab-lms-sql-injection-and-rce-in-assessment","title":"Three Learning Koollab LMS SQL injection and RCE in assessment endpoint","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.71+00:00","url":"https://junglewise.ai/threats/cve-2026-63233-three-learning-koollab-lms-sql-injection-and-rce-in-assessment"},{"cve":"CVE-2026-63232","cvss":9.9,"slug":"cve-2026-63232-three-learning-koollab-lms-sql-injection-and-rce-in-assessment","title":"Three Learning Koollab LMS SQL injection and RCE in assessment reinforcement","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.6+00:00","url":"https://junglewise.ai/threats/cve-2026-63232-three-learning-koollab-lms-sql-injection-and-rce-in-assessment"},{"cve":"CVE-2026-63231","cvss":8.1,"slug":"cve-2026-63231-three-learning-koollab-lms-sql-injection-in-face-to-face-runs","title":"Three Learning Koollab LMS SQL injection in face-to-face runs update endpoint","severity":"high","exploited":false,"published_at":"2026-07-29T07:16:42.49+00:00","url":"https://junglewise.ai/threats/cve-2026-63231-three-learning-koollab-lms-sql-injection-in-face-to-face-runs"},{"cve":"CVE-2026-63230","cvss":9.1,"slug":"cve-2026-63230-three-learning-koollab-lms-sql-injection-in-scorm-report-endpoint","title":"Three Learning Koollab LMS SQL injection in SCORM report endpoint","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.373+00:00","url":"https://junglewise.ai/threats/cve-2026-63230-three-learning-koollab-lms-sql-injection-in-scorm-report-endpoint"},{"cve":"CVE-2026-63229","cvss":9.1,"slug":"cve-2026-63229-three-learning-koollab-lms-blind-sql-injection-in-sso-oauth","title":"Three Learning Koollab LMS blind SQL injection in SSO OAuth endpoint","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.267+00:00","url":"https://junglewise.ai/threats/cve-2026-63229-three-learning-koollab-lms-blind-sql-injection-in-sso-oauth"},{"cve":"CVE-2026-63228","cvss":2.6,"slug":"cve-2026-63228-three-learning-koollab-lms-unrestricted-image-upload-in-feedback","title":"Three Learning Koollab LMS unrestricted image upload in feedback endpoint","severity":"low","exploited":false,"published_at":"2026-07-29T07:16:42.16+00:00","url":"https://junglewise.ai/threats/cve-2026-63228-three-learning-koollab-lms-unrestricted-image-upload-in-feedback"},{"cve":"CVE-2026-63227","cvss":9.9,"slug":"cve-2026-63227-three-learning-koollab-lms-unrestricted-file-upload-in-scorm","title":"Three Learning Koollab LMS unrestricted file upload in SCORM packages","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:41.967+00:00","url":"https://junglewise.ai/threats/cve-2026-63227-three-learning-koollab-lms-unrestricted-file-upload-in-scorm"},{"cve":"CVE-2026-3007","cvss":5.4,"slug":"cve-2026-3007-three-learning-koollab-lms-stored-xss-in-courselet-feature","title":"Three Learning Koollab LMS stored XSS in courselet feature","severity":"medium","exploited":false,"published_at":"2026-04-23T04:16:07.98+00:00","url":"https://junglewise.ai/threats/cve-2026-3007-three-learning-koollab-lms-stored-xss-in-courselet-feature"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":6,"exploited":0,"vulnerabilities":16},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[],"technology":{"hub":true,"name":"Three Learning Koollab LMS","slug":"koollab-lms","vendor":{"name":"Three Learning","slug":"three-learning","url":"https://junglewise.ai/threats/vendors/three-learning"},"aliases":[],"category":"cms","homepage":"https://www.threelearning.com/koollab-lms/","description":"A learning management system designed for corporate and educational training environments.","url":"https://junglewise.ai/threats/technologies/koollab-lms"},"most_severe":[{"cve":"CVE-2026-63234","cvss":9.9,"slug":"cve-2026-63234-three-learning-koollab-lms-sql-injection-and-unsafe","title":"Three Learning Koollab LMS SQL injection and unsafe deserialization","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.817+00:00","url":"https://junglewise.ai/threats/cve-2026-63234-three-learning-koollab-lms-sql-injection-and-unsafe"},{"cve":"CVE-2026-63233","cvss":9.9,"slug":"cve-2026-63233-three-learning-koollab-lms-sql-injection-and-rce-in-assessment","title":"Three Learning Koollab LMS SQL injection and RCE in assessment endpoint","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.71+00:00","url":"https://junglewise.ai/threats/cve-2026-63233-three-learning-koollab-lms-sql-injection-and-rce-in-assessment"},{"cve":"CVE-2026-63232","cvss":9.9,"slug":"cve-2026-63232-three-learning-koollab-lms-sql-injection-and-rce-in-assessment","title":"Three Learning Koollab LMS SQL injection and RCE in assessment reinforcement","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.6+00:00","url":"https://junglewise.ai/threats/cve-2026-63232-three-learning-koollab-lms-sql-injection-and-rce-in-assessment"},{"cve":"CVE-2026-63227","cvss":9.9,"slug":"cve-2026-63227-three-learning-koollab-lms-unrestricted-file-upload-in-scorm","title":"Three Learning Koollab LMS unrestricted file upload in SCORM packages","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:41.967+00:00","url":"https://junglewise.ai/threats/cve-2026-63227-three-learning-koollab-lms-unrestricted-file-upload-in-scorm"},{"cve":"CVE-2026-63230","cvss":9.1,"slug":"cve-2026-63230-three-learning-koollab-lms-sql-injection-in-scorm-report-endpoint","title":"Three Learning Koollab LMS SQL injection in SCORM report endpoint","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.373+00:00","url":"https://junglewise.ai/threats/cve-2026-63230-three-learning-koollab-lms-sql-injection-in-scorm-report-endpoint"},{"cve":"CVE-2026-63229","cvss":9.1,"slug":"cve-2026-63229-three-learning-koollab-lms-blind-sql-injection-in-sso-oauth","title":"Three Learning Koollab LMS blind SQL injection in SSO OAuth endpoint","severity":"critical","exploited":false,"published_at":"2026-07-29T07:16:42.267+00:00","url":"https://junglewise.ai/threats/cve-2026-63229-three-learning-koollab-lms-blind-sql-injection-in-sso-oauth"},{"cve":"CVE-2026-63231","cvss":8.1,"slug":"cve-2026-63231-three-learning-koollab-lms-sql-injection-in-face-to-face-runs","title":"Three Learning Koollab LMS SQL injection in face-to-face runs update endpoint","severity":"high","exploited":false,"published_at":"2026-07-29T07:16:42.49+00:00","url":"https://junglewise.ai/threats/cve-2026-63231-three-learning-koollab-lms-sql-injection-in-face-to-face-runs"},{"cve":"CVE-2026-63238","cvss":6.5,"slug":"cve-2026-63238-three-learning-koollab-lms-authentication-bypass-in-2fa-endpoint","title":"Three Learning Koollab LMS authentication bypass in 2FA endpoint","severity":"medium","exploited":false,"published_at":"2026-07-29T07:16:43.237+00:00","url":"https://junglewise.ai/threats/cve-2026-63238-three-learning-koollab-lms-authentication-bypass-in-2fa-endpoint"},{"cve":"CVE-2026-63239","cvss":5.4,"slug":"cve-2026-63239-three-learning-koollab-lms-hard-coded-aws-iam-credentials","title":"Three Learning Koollab LMS hard-coded AWS IAM credentials","severity":"medium","exploited":false,"published_at":"2026-07-29T07:16:43.343+00:00","url":"https://junglewise.ai/threats/cve-2026-63239-three-learning-koollab-lms-hard-coded-aws-iam-credentials"},{"cve":"CVE-2026-3007","cvss":5.4,"slug":"cve-2026-3007-three-learning-koollab-lms-stored-xss-in-courselet-feature","title":"Three Learning Koollab LMS stored XSS in courselet feature","severity":"medium","exploited":false,"published_at":"2026-04-23T04:16:07.98+00:00","url":"https://junglewise.ai/threats/cve-2026-3007-three-learning-koollab-lms-stored-xss-in-courselet-feature"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}