Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Emreefedogan

#31991of 56,328
8.7Total CVSS
Vulnerabilities · 1
PT-2026-44080
8.7
2026-05-27
Unknown · Relate Lms · CVE-2026-47161
**Name of the Vulnerable Software and Affected Versions** RELATE versions prior to commit d66ba5659b459bf1ba56b7109b5f9ecf197cbefb **Description** RELATE LMS configures its Celery workers to accept and deserialize untrusted pickle data. Pickle is a Python module used for serializing and deserializing objects. An attacker with access to the message broker can execute arbitrary commands on the host server. Due to missing network isolation in the code execution sandbox, an authenticated student can achieve full Remote Code Execution (RCE) on the host system. **Recommendations** Update to the version containing commit d66ba5659b459bf1ba56b7109b5f9ecf197cbefb.