VYPR

Autolab

by Autolabproject

CVEs (2)

  • CVE-2024-49376HigOct 25, 2024
    risk 0.50cvss 8.8epss 0.00

    Autolab, a course management service that enables auto-graded programming assignments, has misconfigured reset password permissions in version 3.0.0. For email-based accounts, users with insufficient privileges could reset and theoretically access privileged users' accounts by…

  • CVE-2023-44395MedJan 22, 2024
    risk 0.32cvss 4.9epss 0.01

    Autolab is a course management service that enables instructors to offer autograded programming assignments to their students over the Web. Path traversal vulnerabilities were discovered in Autolab's assessment functionality in versions of Autolab prior to 2.12.0, whereby…