OpenLearn is open-source educational forum software. Prior to commit 844b2a40a69d0c4911580fe501923f0b391313ab, when `safeMode` is enabled, unapproved forum posts are hidden from the public list, but the direct post-read procedure still returns the full post to anyone with the post UUID. Commit 844b2a40a69d0c4911580fe501923f0b391313ab fixes the issue.
Metrics
Affected Vendors & Products
References
History
Thu, 23 Apr 2026 01:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | OpenLearn is open-source educational forum software. Prior to commit 844b2a40a69d0c4911580fe501923f0b391313ab, when `safeMode` is enabled, unapproved forum posts are hidden from the public list, but the direct post-read procedure still returns the full post to anyone with the post UUID. Commit 844b2a40a69d0c4911580fe501923f0b391313ab fixes the issue. | |
| Title | OpenLearn's pending forum posts remain publicly readable by direct ID when moderation mode is enabled | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-04-23T00:09:03.863Z
Reserved: 2026-04-18T03:47:03.135Z
Link: CVE-2026-41243
No data.
Status : Received
Published: 2026-04-23T02:16:19.040
Modified: 2026-04-23T02:16:19.040
Link: CVE-2026-41243
No data.
OpenCVE Enrichment
No data.