CVE-2026-80428 | ILIAS-eLearning ILIAS up to 9.21/10.9/11.2 Shibboleth Logout shib_logout.php unserialize deserialization

SecurityVulns

A vulnerability described as critical has been identified in ILIAS-eLearning ILIAS up to 9.21/10.9/11.2. This affects the function unserialize of the file components/ILIAS/AuthShibboleth/resources/shib_logout.php of the component Shibboleth Logout Handler. Such manipulation leads to deserialization.

This vulnerability is documented as CVE-2026-80428. The attack can be executed remotely. There is not any exploit available.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More