CVE-2026-53636CWE-294

CVE-2026-53636

Medium · published September 2, 2026

CVSS v3.1
4.7
EPSS
0%
Percentile
6.8
In the wild
Unconfirmed
What it is

Open edX Platform enables the authoring and delivery of online learning at any scale. Prior to commit 3a5ac85, a security vulnerability has been identified in the Open edX LMS platform's LTI (Learning Tools Interoperability) Provider implementation. The validate_timestamp_and_nonce function in lms/djangoapps/lti_provider/signature_validator.py does not validate OAuth nonces or timestamps, allowing an attacker who captures a valid LTI launch request to replay it an unlimited number of times without detection. This issue has been patched via commit 3a5ac85.

The record
Technical detail
CVSS v3.1
4.7 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS v4.0
Not supplied
EPSS
0.00173 · 6.8th percentile
Weakness
CWE-294 · Authentication Bypass by Capture-replay
Published
2026-09-02T21:17Z
References (5)
EPSS history
Timeline
  • 04 SEP 03:42Z
    EPSS moved — → 0%
    epss
  • 02 SEP 16:54Z
    Open edX LTI OAuth Replay Attack
    cvelistv5