Mmastodon TechnologyCybersecurity first seen 20 h ago, last 20 h ago, peak #5
Critical vulnerability disclosed in openSIS Classic software
Original: π¨ EUVD-2026-92806 π Score: 9.3/10 (CVSS v3.1) π¦ Product: openSIS-Classic π’ Vendor: OS4ED π Updated: 2026-10-05 π openSIS
A high-severity vulnerability, tracked as EUVD-2026-92806 with a CVSS score of 9.3, has been disclosed in openSIS Classic 9.3, the open-source student information system from vendor OS4ED. The flaw allows an authenticated user with the built-in teacher role to select an arbitrary staff record via the staff_id parameter and trigger harmful actions within the School module. Schools running the platform are being urged to review the advisory and apply fixes.
Why now: Security advisories with critical scores prompt administrators of affected school systems to check whether their deployments need patching.
openSIS ClassicOS4EDEUVD-2026-92806
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/1165272