CVE-2025-50186 | Chamilo LMS up to 1.11.29 CSV File Parser cross site scripting (GHSA-wrx6-5v5r-mmgx / EUVD-2025-208155)
A vulnerability identified as problematic has been detected in Chamilo LMS up to 1.11.29. This issue affects some unknown processing of the component CSV File Parser. This manipulation causes cross site scripting.
This vulnerability is registered as CVE-2025-50186. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.