CVE-2024-47853: High severity Mahara Mahara vulnerability
Published Aug 26, 2025
·Updated
An issue was discovered in Mahara 23.04.8 and 24.04.4. Attackers may utilize escalation of privileges in certain cases when logging into Mahara with Learning Tools Interoperability (LTI).
Affected Software
3 affected components
Mahara Mahara>=23.04.8<=24.04.4
Mahara Mahara<23.04.9
Mahara Mahara>=24.04.0<24.04.5
Event History
Aug 26, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-47853?
CVE-2024-47853 is categorized as a medium severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2024-47853?
To fix CVE-2024-47853, update Mahara to the latest version beyond 24.04.4.
3
What versions of Mahara are affected by CVE-2024-47853?
CVE-2024-47853 affects Mahara versions 23.04.8 and 24.04.4.
4
What exploit can occur due to CVE-2024-47853?
CVE-2024-47853 allows attackers to escalate their privileges when logging in using Learning Tools Interoperability (LTI).
5
Is there a workaround for CVE-2024-47853?
There are no known workarounds for CVE-2024-47853, so upgrading is the recommended action.