Known Vulnerabilities for Totara by Totara
Listed below are 1 of the newest known vulnerabilities associated with "Totara" by "Totara".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-31282 json | Totara LMS v19.1.5 and before is vulnerable to Incorrect Access Control. The login page code can be manipulated to reveal the... | Not Provided | 2026-04-13 | 2026-05-06 |
| CVE-2026-31281 json | Totara LMS v19.1.5 and before is vulnerable to HTML Injection. An attacker can inject malicious HTML code in a message and se... | Not Provided | 2026-04-13 | 2026-04-24 |
| CVE-2024-3931 json | Not Provided | 2024-04-18 | 2026-04-29 |