CVE-2026-54677 | Erudika Scoold up to 1.68.x QuestionController.java improper authorization

SecurityVulns

A vulnerability was found in Erudika Scoold up to 1.68.x and classified as critical. This affects the function QuestionController.reply/CommentController.createAjax of the file src/main/java/com/erudika/scoold/controllers/QuestionController.java. Such manipulation leads to improper authorization.

This vulnerability is traded as CVE-2026-54677. The attack may be launched remotely. There is no exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More