Filter
AND
-Infinity
0

composer/moodle/moodleMoodle: idor when accessing the cohorts report

EPSS
0.03%
First published (updated )

composer/moodle/moodleMoodle: idor in messaging web service allows access to some user details

EPSS
0.03%
First published (updated )

composer/moodle/moodleMoodle: ajax section delete does not respect course_can_delete_section()

EPSS
0.03%
First published (updated )

composer/moodle/moodleMoodle: reflected xss risk in policy tool

EPSS
0.03%
First published (updated )

composer/moodle/moodleMoodle: idor in web service allows users enrolled in a course to access some details of other users

EPSS
0.03%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

composer/moodle/moodleMoodle: idor in moodle rss block allows unauthorized access to rss feeds

EPSS
0.03%
First published (updated )

composer/moodle/moodleMoodle: moodle allows course self-enrolment before completing mfa

EPSS
0.03%
First published (updated )

MoodleMoodle: moodle assignment submission search leaks anonymous student identities

EPSS
0.03%
First published (updated )

composer/moodle/moodleMoodle: partial data exposure in moodle before completing multi-factor authentication

EPSS
0.04%
First published (updated )

composer/moodle/moodleMoodle: hidden grades shown to users without permission on some grade reports

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

MoodleMoodle: reflected xss via h5p error message

First published (updated )

composer/moodle/moodleMoodle: xss risk when restoring malicious course backup file

First published (updated )

composer/moodle/moodleMoodle: can create global glossary without being admin

First published (updated )

composer/moodle/moodleMoodle: matrix user/power level management not always working as expected with suspended users

First published (updated )

composer/moodle/moodleMoodle: authorization headers preserved between "emulated redirects"

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

composer/moodle/moodleMoodle: lack of access control when using external methods for quiz overrides

First published (updated )

composer/moodle/moodleMoodle: user information visibility control issues in gradebook reports

First published (updated )

composer/moodle/moodleMoodle: some users can delete audiences of other reports

EPSS
0.05%
First published (updated )

composer/moodle/moodleMoodle: idor when fetching report schedules

EPSS
0.05%
First published (updated )

composer/moodle/moodleMoodle: users' names returned in messaging error message

EPSS
0.05%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

composer/moodle/moodleMoodle: idor in edit/delete rss feed

EPSS
0.05%
First published (updated )

MoodleXSS

First published (updated )

MoodleXSS

First published (updated )

composer/moodle/moodlemoodle: authenticated LFI risk in some misconfigured shared hosting environments via modified mod_data backup

EPSS
0.04%
First published (updated )

composer/moodle/moodlemoodle: authenticated LFI risk in some misconfigured shared hosting environments via modified mod_wiki backup

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

composer/moodle/moodlemoodle: authenticated LFI risk in some misconfigured shared hosting environments via modified mod_workshop backup

First published (updated )

composer/moodle/moodlemoodle: authenticated LFI risk in some misconfigured shared hosting environments via modified mod_feedback backup

EPSS
0.04%
First published (updated )

composer/moodle/moodleXSS, Code Injection

EPSS
0.04%
First published (updated )

composer/moodle/moodleXSS

EPSS
0.04%
First published (updated )

composer/moodle/moodleMsa-24-0003: h5p attempts report did not respect activity group settings

EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203