Логотип exploitDog
product: "moodle"
Консоль
Логотип exploitDog

exploitDog

product: "moodle"

Количество 2 643

Количество 2 643

nvd логотип

CVE-2025-3643

8 месяцев назад

A flaw was found in Moodle. The return URL in the policy tool required additional sanitizing to prevent a reflected Cross-site scripting (XSS) risk.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-3643

8 месяцев назад

A flaw was found in Moodle. The return URL in the policy tool required ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2025-3642

8 месяцев назад

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2025-3642

8 месяцев назад

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-3642

8 месяцев назад

A flaw was found in Moodle. A remote code execution risk was identifie ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2025-3641

8 месяцев назад

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS Dropbox repository. By default, this was only available to teachers and managers on sites with the Dropbox repository enabled.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2025-3641

8 месяцев назад

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS Dropbox repository. By default, this was only available to teachers and managers on sites with the Dropbox repository enabled.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-3641

8 месяцев назад

A flaw was found in Moodle. A remote code execution risk was identifie ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2025-3640

8 месяцев назад

A flaw was found in Moodle. Insufficient capability checks made it possible for a user enrolled in a course to access some details, such as the full name and profile image URL, of other users they did not have permission to access.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-3640

8 месяцев назад

A flaw was found in Moodle. Insufficient capability checks made it possible for a user enrolled in a course to access some details, such as the full name and profile image URL, of other users they did not have permission to access.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-3640

8 месяцев назад

A flaw was found in Moodle. Insufficient capability checks made it pos ...

CVSS3: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2025-3638

8 месяцев назад

A flaw was found in Moodle. The analysis request action in the Brickfield tool did not include the necessary token to prevent a Cross-site request forgery (CSRF) risk.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2025-3638

8 месяцев назад

A flaw was found in Moodle. The analysis request action in the Brickfield tool did not include the necessary token to prevent a Cross-site request forgery (CSRF) risk.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2025-3638

8 месяцев назад

A flaw was found in Moodle. The analysis request action in the Brickfi ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2025-3637

8 месяцев назад

A security vulnerability was found in Moodle where confidential information that prevents cross-site request forgery (CSRF) attacks was shared publicly through the site's URL. This vulnerability occurred specifically on two types of pages within the mod_data module: edit and delete pages.

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2025-3637

8 месяцев назад

A security vulnerability was found in Moodle where confidential information that prevents cross-site request forgery (CSRF) attacks was shared publicly through the site's URL. This vulnerability occurred specifically on two types of pages within the mod_data module: edit and delete pages.

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2025-3637

8 месяцев назад

A security vulnerability was found in Moodle where confidential inform ...

CVSS3: 3.1
EPSS: Низкий
ubuntu логотип

CVE-2025-3636

8 месяцев назад

A flaw was found in Moodle. This vulnerability allows unauthorized users to access and view RSS feeds due to insufficient capability checks.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2025-3636

8 месяцев назад

A flaw was found in Moodle. This vulnerability allows unauthorized users to access and view RSS feeds due to insufficient capability checks.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2025-3636

8 месяцев назад

A flaw was found in Moodle. This vulnerability allows unauthorized use ...

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-3643

A flaw was found in Moodle. The return URL in the policy tool required additional sanitizing to prevent a reflected Cross-site scripting (XSS) risk.

CVSS3: 5.4
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3643

A flaw was found in Moodle. The return URL in the policy tool required ...

CVSS3: 5.4
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2025-3642

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2025-3642

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3642

A flaw was found in Moodle. A remote code execution risk was identifie ...

CVSS3: 8.8
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2025-3641

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS Dropbox repository. By default, this was only available to teachers and managers on sites with the Dropbox repository enabled.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2025-3641

A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS Dropbox repository. By default, this was only available to teachers and managers on sites with the Dropbox repository enabled.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3641

A flaw was found in Moodle. A remote code execution risk was identifie ...

CVSS3: 8.8
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2025-3640

A flaw was found in Moodle. Insufficient capability checks made it possible for a user enrolled in a course to access some details, such as the full name and profile image URL, of other users they did not have permission to access.

CVSS3: 4.3
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2025-3640

A flaw was found in Moodle. Insufficient capability checks made it possible for a user enrolled in a course to access some details, such as the full name and profile image URL, of other users they did not have permission to access.

CVSS3: 4.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3640

A flaw was found in Moodle. Insufficient capability checks made it pos ...

CVSS3: 4.3
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2025-3638

A flaw was found in Moodle. The analysis request action in the Brickfield tool did not include the necessary token to prevent a Cross-site request forgery (CSRF) risk.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2025-3638

A flaw was found in Moodle. The analysis request action in the Brickfield tool did not include the necessary token to prevent a Cross-site request forgery (CSRF) risk.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3638

A flaw was found in Moodle. The analysis request action in the Brickfi ...

CVSS3: 8.8
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2025-3637

A security vulnerability was found in Moodle where confidential information that prevents cross-site request forgery (CSRF) attacks was shared publicly through the site's URL. This vulnerability occurred specifically on two types of pages within the mod_data module: edit and delete pages.

CVSS3: 3.1
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2025-3637

A security vulnerability was found in Moodle where confidential information that prevents cross-site request forgery (CSRF) attacks was shared publicly through the site's URL. This vulnerability occurred specifically on two types of pages within the mod_data module: edit and delete pages.

CVSS3: 3.1
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3637

A security vulnerability was found in Moodle where confidential inform ...

CVSS3: 3.1
0%
Низкий
8 месяцев назад
ubuntu логотип
CVE-2025-3636

A flaw was found in Moodle. This vulnerability allows unauthorized users to access and view RSS feeds due to insufficient capability checks.

CVSS3: 4.3
0%
Низкий
8 месяцев назад
nvd логотип
CVE-2025-3636

A flaw was found in Moodle. This vulnerability allows unauthorized users to access and view RSS feeds due to insufficient capability checks.

CVSS3: 4.3
0%
Низкий
8 месяцев назад
debian логотип
CVE-2025-3636

A flaw was found in Moodle. This vulnerability allows unauthorized use ...

CVSS3: 4.3
0%
Низкий
8 месяцев назад

Уязвимостей на страницу