This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
Hacker & Security News
hacker.at.thenote.app
did:plc:pcievrygrnjjg5ni7mjfgctb
CVE-2026-56877 - Skillable SCORM userId authorisation bypass
Posted by Greg via Fulldisclosure on Jul 15Skillable's SCORM lab launch endpoint validates a launch token but
enforces per-user allocation limits using a browser-supplied userId
that is not bound to the validated toke…
#hackernews #news
https://seclists.org/fulldisclosure/2026/Jul/20
2026-07-16T22:13:02.966Z