CVE-2026-63239 UNKNOWN

CVE-2026-63239

Published: 2026-07-29

Description

A hard-coded AWS IAM credentials vulnerability in Koollab LMS allowed an attacker to access shared multi-tenant S3 buckets and SQS queues, exposing sensitive data and enabling malicious content injection, job manipulation, or email interception.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…