CVE-2025-30076 | Koha up to 22.11.23/23.11.11/24.05.06/24.11.01 tools/scheduler.pl report os command injection (EUVD-2025-6654)
A vulnerability was found in Koha up to 22.11.23/23.11.11/24.05.06/24.11.01 and classified as problematic. Affected by this issue is some unknown functionality of the file tools/scheduler.pl. The manipulation of the argument report leads to os command injection.
This vulnerability is handled as CVE-2025-30076. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.