CVE-2026-25126 | polarnl PolarLearn prior 0-PRERELEASE-15 Vote API /api/v1/forum/vote votes_data direction input validation (GHSA-ghpx-5w2p-p3qp / EUVD-2026-4937)
A vulnerability categorized as critical has been discovered in polarnl PolarLearn. This affects the function votes_data of the file /api/v1/forum/vote of the component Vote API. The manipulation of the argument direction results in improper input validation.
This vulnerability was named CVE-2026-25126. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.