HomeCVE Intelligence › CVE-2026-56877
CVSS 8.0 HIGH Zero-Day Exploit

CVE-2026-56877: CVE-2026-56877 - Skillable SCORM userId authorisation bypass

<p>Posted by Greg via Fulldisclosure on Jul 15</p>Skillable's SCORM lab launch endpoint validates a launch token but<br> enforces per-user allocation limits using a browser-supplied userId<…

8.0CVSS Score
HIGHSeverity
NOCISA KEV
Zero-Day ExploitImpact Type

📋 Vulnerability Details

CVE IDCVE-2026-56877
VendorSecLists
Affected ProductMultiple Targets
Vulnerability TypeZero-Day Exploit
CVSS Score8.0 (HIGH)
Actively Exploited❌ No known exploitation
Patch StatusSee Vendor Advisory →
Reported ByCYBERDUDEBIVASH SENTINEL APEX Intelligence (via fulldisclosure)

🔬 Technical Analysis

<p>Posted by Greg via Fulldisclosure on Jul 15</p>Skillable's SCORM lab launch endpoint validates a launch token but<br> enforces per-user allocation limits using a browser-supplied userId<br> that is not bound to the validated token. An authenticated learner<br> can modify this identifier to bypass configured limits, launch<br> concurrent lab instances, and consume another learner's allocation.<br> Skillable states that no fix is planned for the legacy SCORM launch<br> path. CVE-2026-56877 was assigned by...<br>

📚 Advisory References

⚡ DETECTION RULES AVAILABLE

Get CVE-2026-56877 Detection Pack

Sigma rules, YARA signatures, IOC table, and SIEM queries for Splunk, Elastic, Sentinel, and Chronicle — deployable in 5 minutes.

✓ Sigma Rules ✓ YARA Pack ✓ IOC Table ✓ SIEM Queries
🛡️ Get Detection Pack → 🔌 Access via API →

🔗 Related Intelligence