Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"
Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.120242025202620272028

Недавние уязвимости Moodle

Количество 2 643

debian логотип

CVE-2025-62396

около 2 месяцев назад

An error-handling issue in the Moodle router (r.php) could cause the a ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2025-62395

около 2 месяцев назад

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-62395

около 2 месяцев назад

A flaw in the cohort search web service allowed users with permissions ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-62394

около 2 месяцев назад

Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-62394

около 2 месяцев назад

Moodle failed to verify enrolment status correctly when sending quiz n ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-62393

около 2 месяцев назад

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-62393

около 2 месяцев назад

A flaw was found in the course overview output function where user acc ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2025-62398

около 2 месяцев назад

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2025-62393

около 2 месяцев назад

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2025-62400

около 2 месяцев назад

Moodle exposed the names of hidden groups to users who had permission to create calendar events but not to view hidden groups. This could reveal private or restricted group information.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2025-62396

An error-handling issue in the Moodle router (r.php) could cause the a ...

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2025-62395

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-62395

A flaw in the cohort search web service allowed users with permissions ...

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2025-62394

Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-62394

Moodle failed to verify enrolment status correctly when sending quiz n ...

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2025-62393

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-62393

A flaw was found in the course overview output function where user acc ...

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2025-62398

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2025-62393

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
ubuntu логотип
CVE-2025-62400

Moodle exposed the names of hidden groups to users who had permission to create calendar events but not to view hidden groups. This could reveal private or restricted group information.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу


Поделиться