Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.15.220242025202620272028

Недавние уязвимости Moodle

Количество 2 712

nvd логотип

CVE-2025-3628

больше 1 года назад

A flaw has was found in Moodle where anonymous assignment submissions can be de-anonymized via search, revealing student identities.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-3628

больше 1 года назад

A flaw has was found in Moodle where anonymous assignment submissions ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-3627

больше 1 года назад

A security vulnerability was discovered in Moodle that allows some users to access sensitive information about other students before they finish verifying their identities using two-factor authentication (2FA).

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-3627

больше 1 года назад

A security vulnerability was discovered in Moodle that allows some use ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-3625

больше 1 года назад

A security vulnerability was discovered in Moodle that can allow hackers to gain access to sensitive information about students and prevent them from logging into their accounts, even after they had completed two-factor authentication (2FA).

CVSS3: 7.1
EPSS: Низкий
debian логотип

CVE-2025-3625

больше 1 года назад

A security vulnerability was discovered in Moodle that can allow hacke ...

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2025-32045

больше 1 года назад

A flaw has been identified in Moodle where insufficient capability checks in certain grade reports allowed users without the necessary permissions to access hidden grades.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-32045

больше 1 года назад

A flaw has been identified in Moodle where insufficient capability che ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-32044

больше 1 года назад

A flaw has been identified in Moodle where, on certain sites, unauthenticated users could retrieve sensitive user data—including names, contact information, and hashed passwords—via stack traces returned by specific API calls. Sites with PHP configured with zend.exception_ignore_args = 1 in the php.ini file are not affected by this vulnerability.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-32044

больше 1 года назад

A flaw has been identified in Moodle where, on certain sites, unauthen ...

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2025-3628

A flaw has was found in Moodle where anonymous assignment submissions can be de-anonymized via search, revealing student identities.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
debian логотип
CVE-2025-3628

A flaw has was found in Moodle where anonymous assignment submissions ...

CVSS3: 4.3
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-3627

A security vulnerability was discovered in Moodle that allows some users to access sensitive information about other students before they finish verifying their identities using two-factor authentication (2FA).

CVSS3: 4.3
0%
Низкий
больше 1 года назад
debian логотип
CVE-2025-3627

A security vulnerability was discovered in Moodle that allows some use ...

CVSS3: 4.3
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-3625

A security vulnerability was discovered in Moodle that can allow hackers to gain access to sensitive information about students and prevent them from logging into their accounts, even after they had completed two-factor authentication (2FA).

CVSS3: 7.1
0%
Низкий
больше 1 года назад
debian логотип
CVE-2025-3625

A security vulnerability was discovered in Moodle that can allow hacke ...

CVSS3: 7.1
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-32045

A flaw has been identified in Moodle where insufficient capability checks in certain grade reports allowed users without the necessary permissions to access hidden grades.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
debian логотип
CVE-2025-32045

A flaw has been identified in Moodle where insufficient capability che ...

CVSS3: 5.3
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2025-32044

A flaw has been identified in Moodle where, on certain sites, unauthenticated users could retrieve sensitive user data—including names, contact information, and hashed passwords—via stack traces returned by specific API calls. Sites with PHP configured with zend.exception_ignore_args = 1 in the php.ini file are not affected by this vulnerability.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2025-32044

A flaw has been identified in Moodle where, on certain sites, unauthen ...

CVSS3: 7.5
0%
Низкий
больше 1 года назад

Уязвимостей на страницу


Поделиться