Opigno is a learning management system platform whose vulnerability exposure centers on its core application and modular components including group management, learning paths, and question-type extensions, with the durable signal pointing to static code-injection weaknesses in template and directive handling. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Opigno over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-13264CRITICAL Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno module allows PHP Local File Inclusion.This issue affects Op | Jan 9, 2025 | 9.8 | 25 | NO | NO |
CVE-2024-13267HIGH Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno TinCan Question Type allows PHP Local File Inclusion.This is | Jan 9, 2025 | 7.5 | 20 | NO | NO |
CVE-2024-13265HIGH Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno Learning path allows PHP Local File Inclusion.This issue aff | Jan 9, 2025 | 7.5 | 20 | NO | NO |
CVE-2024-13268MEDIUM Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno allows PHP Local File Inclusion.This issue affects Opigno: f | Jan 9, 2025 | 6.8 | 18 | NO | NO |
CVE-2024-13263MEDIUM Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno group manager allows PHP Local File Inclusion.This issue aff | Jan 9, 2025 | 5.5 | 17 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Opigno.
Media articles that mention a CVE ID that affects a product developed by Opigno — matched by CVE ID, not by vendor name.