CVE-2025-3642: Moodle: authenticated remote code execution risk in the moodle lms equella repository
A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.
Other sources
A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default this was only available to teachers and managers, on sites with the EQUELLA repository enabled.
Versions affected: 4.5 to 4.5.3, 4.4 to 4.4.7, 4.3 to 4.3.11, 4.1 to 4.1.17 and earlier unsupported versions.
Versions fixed:4.5.4, 4.4.8, 4.3.12 and 4.1.18
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3642?
CVE-2025-3642 has a high severity rating due to the potential for remote code execution.
How do I fix CVE-2025-3642?
To fix CVE-2025-3642, upgrade to Moodle versions 4.5.4, 4.4.8, 4.3.12, or 4.1.18 or later.
Who is affected by CVE-2025-3642?
CVE-2025-3642 affects Moodle LMS users with the EQUELLA repository enabled, specifically teachers and managers.
What versions of Moodle are impacted by CVE-2025-3642?
Moodle versions 4.5 to 4.5.3, 4.4 to 4.4.7, 4.3 to 4.3.11, and 4.1 to 4.1.17 are impacted by CVE-2025-3642.
What types of vulnerabilities does CVE-2025-3642 represent?
CVE-2025-3642 represents a remote code execution vulnerability within the Moodle LMS.