Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 470

CVE-2021-36402
In Moodle, Users' names required additional sanitizing in the account confirmation email, to prevent a self-registration phishing risk.

CVE-2021-36403
In Moodle, in some circumstances, email notifications of messages could have the link back to the original message hidden by HTML, which may pose a phishing risk.

CVE-2021-36401
In Moodle, ID numbers exported in HTML data formats required additional sanitizing to prevent a local stored XSS risk.
CVE-2021-36401
In Moodle, ID numbers exported in HTML data formats required additiona ...

CVE-2021-36400
In Moodle, insufficient capability checks made it possible to remove other users' calendar URL subscriptions.
CVE-2021-36400
In Moodle, insufficient capability checks made it possible to remove o ...

CVE-2021-36399
In Moodle, ID numbers displayed in the quiz override screens required additional sanitizing to prevent a stored XSS risk.
CVE-2021-36399
In Moodle, ID numbers displayed in the quiz override screens required ...

CVE-2021-36398
In moodle, ID numbers displayed in the web service token list required additional sanitizing to prevent a stored XSS risk.
CVE-2021-36398
In moodle, ID numbers displayed in the web service token list required ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
---|---|---|---|---|
![]() | CVE-2021-36402 In Moodle, Users' names required additional sanitizing in the account confirmation email, to prevent a self-registration phishing risk. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад |
![]() | CVE-2021-36403 In Moodle, in some circumstances, email notifications of messages could have the link back to the original message hidden by HTML, which may pose a phishing risk. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад |
![]() | CVE-2021-36401 In Moodle, ID numbers exported in HTML data formats required additional sanitizing to prevent a local stored XSS risk. | CVSS3: 4.8 | 0% Низкий | больше 2 лет назад |
CVE-2021-36401 In Moodle, ID numbers exported in HTML data formats required additiona ... | CVSS3: 4.8 | 0% Низкий | больше 2 лет назад | |
![]() | CVE-2021-36400 In Moodle, insufficient capability checks made it possible to remove other users' calendar URL subscriptions. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад |
CVE-2021-36400 In Moodle, insufficient capability checks made it possible to remove o ... | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад | |
![]() | CVE-2021-36399 In Moodle, ID numbers displayed in the quiz override screens required additional sanitizing to prevent a stored XSS risk. | CVSS3: 5.4 | 1% Низкий | больше 2 лет назад |
CVE-2021-36399 In Moodle, ID numbers displayed in the quiz override screens required ... | CVSS3: 5.4 | 1% Низкий | больше 2 лет назад | |
![]() | CVE-2021-36398 In moodle, ID numbers displayed in the web service token list required additional sanitizing to prevent a stored XSS risk. | CVSS3: 5.4 | 1% Низкий | больше 2 лет назад |
CVE-2021-36398 In moodle, ID numbers displayed in the web service token list required ... | CVSS3: 5.4 | 1% Низкий | больше 2 лет назад |
Уязвимостей на страницу