High severity8.1NVD Advisory· Published Mar 11, 2026· Updated Apr 7, 2026
CVE-2025-67298
CVE-2025-67298
Description
An issue in ClasroomIO before v.0.2.6 allows a remote attacker to escalate privileges via the endpoints /api/verify and /rest/v1/profile
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:classroomio:classroomio:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:classroomio:classroomio:*:*:*:*:*:*:*:*range: <0.2.6
- (no CPE)range: <0.2.6
Patches
Vulnerability mechanics
References
2- gist.github.com/prashunbaral/70c4f6f9d9ff8b82295623073eb41f3anvdExploitThird Party Advisory
- github.com/classroomio/classroomio/releases/tag/v0.2.6nvdRelease Notes
News mentions
0No linked articles in our index yet.