Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 645
CVE-2021-36401
In Moodle, ID numbers exported in HTML data formats required additional sanitizing to prevent a local stored XSS risk.
GHSA-f46j-r7q3-6cm2
Moodle SQL Injection vulnerability
GHSA-qc86-vgf2-6fq6
Moodle SQL Injection vulnerability
GHSA-4rmj-w58m-fvch
Moodle vulnerable to Server-Side Request Forgery
GHSA-2563-fp9c-mgm8
Moodle Session Fixation vulnerability
GHSA-273w-7fxj-pcp6
Moodle vulnerable to Uncontrolled Resource Consumption
CVE-2021-36396
In Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions, resulting in a blind SSRF risk.
CVE-2021-36396
In Moodle, insufficient redirect handling made it possible to blindly ...
CVE-2021-36395
In Moodle, the file repository's URL parsing required additional recursion handling to mitigate the risk of recursion denial of service.
CVE-2021-36395
In Moodle, the file repository's URL parsing required additional recur ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2021-36401 In Moodle, ID numbers exported in HTML data formats required additional sanitizing to prevent a local stored XSS risk. | CVSS3: 4.8 | 0% Низкий | почти 3 года назад | |
GHSA-f46j-r7q3-6cm2 Moodle SQL Injection vulnerability | CVSS3: 9.8 | 27% Средний | почти 3 года назад | |
GHSA-qc86-vgf2-6fq6 Moodle SQL Injection vulnerability | CVSS3: 9.8 | 1% Низкий | почти 3 года назад | |
GHSA-4rmj-w58m-fvch Moodle vulnerable to Server-Side Request Forgery | CVSS3: 7.5 | 1% Низкий | почти 3 года назад | |
GHSA-2563-fp9c-mgm8 Moodle Session Fixation vulnerability | CVSS3: 9.8 | 21% Средний | почти 3 года назад | |
GHSA-273w-7fxj-pcp6 Moodle vulnerable to Uncontrolled Resource Consumption | CVSS3: 7.5 | 0% Низкий | почти 3 года назад | |
CVE-2021-36396 In Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions, resulting in a blind SSRF risk. | CVSS3: 7.5 | 1% Низкий | почти 3 года назад | |
CVE-2021-36396 In Moodle, insufficient redirect handling made it possible to blindly ... | CVSS3: 7.5 | 1% Низкий | почти 3 года назад | |
CVE-2021-36395 In Moodle, the file repository's URL parsing required additional recursion handling to mitigate the risk of recursion denial of service. | CVSS3: 7.5 | 0% Низкий | почти 3 года назад | |
CVE-2021-36395 In Moodle, the file repository's URL parsing required additional recur ... | CVSS3: 7.5 | 0% Низкий | почти 3 года назад |
Уязвимостей на страницу