Moodle — система управления образовательными электронными курсами
Релизный цикл, информация об уязвимостях
График релизов
Количество 2 647
CVE-2025-3637
A security vulnerability was found in Moodle where confidential information that prevents cross-site request forgery (CSRF) attacks was shared publicly through the site's URL. This vulnerability occurred specifically on two types of pages within the mod_data module: edit and delete pages.
CVE-2025-3636
A flaw was found in Moodle. This vulnerability allows unauthorized use ...
CVE-2025-3636
A flaw was found in Moodle. This vulnerability allows unauthorized users to access and view RSS feeds due to insufficient capability checks.
CVE-2025-3635
A security vulnerability was discovered in Moodle that allows anyone t ...
CVE-2025-3635
A security vulnerability was discovered in Moodle that allows anyone to duplicate existing tours without needing to log in due to a lack of protection against cross-site request forgery (CSRF) attacks.
CVE-2025-3628
A flaw has was found in Moodle where anonymous assignment submissions ...
CVE-2025-3628
A flaw has was found in Moodle where anonymous assignment submissions can be de-anonymized via search, revealing student identities.
CVE-2025-3627
A security vulnerability was discovered in Moodle that allows some use ...
CVE-2025-3627
A security vulnerability was discovered in Moodle that allows some users to access sensitive information about other students before they finish verifying their identities using two-factor authentication (2FA).
CVE-2025-3625
A security vulnerability was discovered in Moodle that can allow hacke ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2025-3637 A security vulnerability was found in Moodle where confidential information that prevents cross-site request forgery (CSRF) attacks was shared publicly through the site's URL. This vulnerability occurred specifically on two types of pages within the mod_data module: edit and delete pages. | CVSS3: 3.1 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3636 A flaw was found in Moodle. This vulnerability allows unauthorized use ... | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3636 A flaw was found in Moodle. This vulnerability allows unauthorized users to access and view RSS feeds due to insufficient capability checks. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3635 A security vulnerability was discovered in Moodle that allows anyone t ... | CVSS3: 3.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3635 A security vulnerability was discovered in Moodle that allows anyone to duplicate existing tours without needing to log in due to a lack of protection against cross-site request forgery (CSRF) attacks. | CVSS3: 3.5 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3628 A flaw has was found in Moodle where anonymous assignment submissions ... | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3628 A flaw has was found in Moodle where anonymous assignment submissions can be de-anonymized via search, revealing student identities. | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3627 A security vulnerability was discovered in Moodle that allows some use ... | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3627 A security vulnerability was discovered in Moodle that allows some users to access sensitive information about other students before they finish verifying their identities using two-factor authentication (2FA). | CVSS3: 4.3 | 0% Низкий | 9 месяцев назад | |
CVE-2025-3625 A security vulnerability was discovered in Moodle that can allow hacke ... | CVSS3: 7.1 | 0% Низкий | 9 месяцев назад |
Уязвимостей на страницу