Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Moodle

Moodleсистема управления образовательными электронными курсами

Релизный цикл, информация об уязвимостях

Продукт: Moodle
Вендор: moodle

График релизов

4.55.05.15.220242025202620272028

Недавние уязвимости Moodle

Количество 2 712

github логотип

GHSA-8fcv-4qp9-pg32

9 месяцев назад

Moodle sends quiz-related messages to inactive/suspended users

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-7f5w-xxw9-mqgp

9 месяцев назад

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-62401

9 месяцев назад

An issue in Moodle’s timed assignment feature allowed students to bypass the time restriction, potentially giving them more time than allowed to complete an assessment.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-62401

9 месяцев назад

An issue in Moodle\u2019s timed assignment feature allowed students to ...

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2025-62400

9 месяцев назад

Moodle exposed the names of hidden groups to users who had permission to create calendar events but not to view hidden groups. This could reveal private or restricted group information.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-62400

9 месяцев назад

Moodle exposed the names of hidden groups to users who had permission ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-62399

9 месяцев назад

Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2025-62399

9 месяцев назад

Moodle\u2019s mobile and web service authentication endpoints did not ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-62398

9 месяцев назад

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-62398

9 месяцев назад

A serious authentication flaw allowed attackers with valid credentials ...

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-8fcv-4qp9-pg32

Moodle sends quiz-related messages to inactive/suspended users

CVSS3: 4.3
0%
Низкий
9 месяцев назад
github логотип
GHSA-7f5w-xxw9-mqgp

A flaw in the cohort search web service allowed users with permissions in lower contexts to access cohort information from the system context, revealing restricted administrative data.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62401

An issue in Moodle’s timed assignment feature allowed students to bypass the time restriction, potentially giving them more time than allowed to complete an assessment.

CVSS3: 5.4
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62401

An issue in Moodle\u2019s timed assignment feature allowed students to ...

CVSS3: 5.4
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62400

Moodle exposed the names of hidden groups to users who had permission to create calendar events but not to view hidden groups. This could reveal private or restricted group information.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62400

Moodle exposed the names of hidden groups to users who had permission ...

CVSS3: 4.3
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62399

Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62399

Moodle\u2019s mobile and web service authentication endpoints did not ...

CVSS3: 7.5
0%
Низкий
9 месяцев назад
nvd логотип
CVE-2025-62398

A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.

CVSS3: 5.4
0%
Низкий
9 месяцев назад
debian логотип
CVE-2025-62398

A serious authentication flaw allowed attackers with valid credentials ...

CVSS3: 5.4
0%
Низкий
9 месяцев назад

Уязвимостей на страницу


Поделиться