<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Moodle (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/moodle.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/moodle-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Moodle (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:50 +0000</lastBuildDate>
  <item>
    <title>[Critical] CVE-2026-30884 – mdjnelson/moodle-mod_customcert is a Moodle plugin for creating dynamically gene...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-30884</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-30884</guid>
    <pubDate>Wed, 18 Mar 2026 04:17:18 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-30884</strong></p>
  <p>mdjnelson/moodle-mod_customcert is a Moodle plugin for creating dynamically generated certificates with complete customization via the web browser. Prior to versions 4.4.9 and 5.0.3, a teacher who holds `mod/customcert:manage` in any single course can read and silently overwrite certificate elements belonging to any other course in the Moodle installation. The `core_get_fragment` callback `editel…</p>
  <p><strong>CVSS:</strong> 9.6 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-30884">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26046 – A vulnerability was found in a Moodle TeX filter administrative setting where in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26046</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26046</guid>
    <pubDate>Sat, 21 Feb 2026 06:17:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26046</strong></p>
  <p>A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration input could allow command injection. On sites where the TeX filter is enabled and ImageMagick is installed, a maliciously crafted setting value entered by an administrator could result in unintended system command execution. While exploitation requires administrative privileges…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26046">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26045 – A flaw was identified in Moodle’s backup restore functionality where specially c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26045</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26045</guid>
    <pubDate>Sat, 21 Feb 2026 06:16:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26045</strong></p>
  <p>A flaw was identified in Moodle’s backup restore functionality where specially crafted backup files were not properly validated during processing. If a malicious backup file is restored, it could lead to unintended execution of server-side code. Since restore capabilities are typically available to privileged users, exploitation requires authenticated access. Successful exploitation could result…</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26045">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-67853 – A flaw was found in Moodle. A remote attacker could exploit a lack of proper rat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67853</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67853</guid>
    <pubDate>Tue, 03 Feb 2026 11:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-67853</strong></p>
  <p>A flaw was found in Moodle. A remote attacker could exploit a lack of proper rate limiting in the confirmation email service. This vulnerability allows attackers to more easily enumerate or guess user credentials, facilitating brute-force attacks against user accounts.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67853">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-67850 – A flaw was found in moodle. This vulnerability, known as Cross-Site Scripting (X...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67850</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67850</guid>
    <pubDate>Tue, 03 Feb 2026 11:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-67850</strong></p>
  <p>A flaw was found in moodle. This vulnerability, known as Cross-Site Scripting (XSS), occurs due to insufficient checks on user-provided data in the formula editor's arithmetic expression fields. A remote attacker could inject malicious code into these fields. When other users view these expressions, the malicious code would execute in their web browsers, potentially compromising their data or lea…</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67850">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-67849 – A flaw was found in Moodle. This cross-site scripting (XSS) vulnerability, cause...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67849</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67849</guid>
    <pubDate>Tue, 03 Feb 2026 11:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-67849</strong></p>
  <p>A flaw was found in Moodle. This cross-site scripting (XSS) vulnerability, caused by improper sanitization of AI prompt responses, allows attackers to inject malicious HTML or script into web pages. When other users view these compromised pages, their sessions could be stolen, or the user interface could be manipulated.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67849">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-67848 – A flaw was found in Moodle. This authentication bypass vulnerability allows susp...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67848</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67848</guid>
    <pubDate>Tue, 03 Feb 2026 11:15:54 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-67848</strong></p>
  <p>A flaw was found in Moodle. This authentication bypass vulnerability allows suspended users to authenticate through the Learning Tools Interoperability (LTI) Provider. The issue arises from the LTI authentication handlers failing to enforce the user's suspension status, enabling unauthorized access to the system. This can lead to information disclosure or other unauthorized actions by users who s…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-280</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67848">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-67847 – A flaw was found in Moodle. An attacker with access to the restore interface cou...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-67847</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-67847</guid>
    <pubDate>Fri, 23 Jan 2026 05:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-67847</strong></p>
  <p>A flaw was found in Moodle. An attacker with access to the restore interface could trigger server-side execution of arbitrary code. This is due to insufficient validation of restore input, which leads to unintended interpretation by core restore routines. Successful exploitation could result in a full compromise of the Moodle application.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-67847">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-47857 – Moodle 3.10.3 contains a persistent cross-site scripting vulnerability in the ca...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-47857</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-47857</guid>
    <pubDate>Wed, 21 Jan 2026 18:16:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-47857</strong></p>
  <p>Moodle 3.10.3 contains a persistent cross-site scripting vulnerability in the calendar event subtitle field that allows attackers to inject malicious scripts. Attackers can craft a calendar event with malicious JavaScript in the subtitle track label to execute arbitrary code when users view the event.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-47857">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62399 – Moodle’s mobile and web service authentication endpoints did not sufficiently re...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62399</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62399</guid>
    <pubDate>Thu, 23 Oct 2025 12:15:32 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62399</strong></p>
  <p>Moodle’s mobile and web service authentication endpoints did not sufficiently restrict repeated password attempts, making them susceptible to brute-force attacks.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-307</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62399">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-60507 – Cross site scripting vulnerability in Moodle GeniAI plugin (local_geniai) 2.3.6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-60507</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-60507</guid>
    <pubDate>Tue, 21 Oct 2025 18:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-60507</strong></p>
  <p>Cross site scripting vulnerability in Moodle GeniAI plugin (local_geniai) 2.3.6. An authenticated user with Teacher role can upload a PDF containing embedded JavaScript. The assistant outputs a direct HTML link to the uploaded file without sanitization. When other users (including Students or Administrators) click the link, the payload executes in their browser.</p>
  <p><strong>CVSS:</strong> 8.9 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-60507">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-34031 – A path traversal vulnerability exists in the Moodle LMS Jmol plugin version 6.1 ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-34031</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-34031</guid>
    <pubDate>Tue, 24 Jun 2025 01:15:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-34031</strong></p>
  <p>A path traversal vulnerability exists in the Moodle LMS Jmol plugin version 6.1 and prior via the query parameter in jsmol.php. The script directly passes user input to the file_get_contents() function without proper validation, allowing attackers to read arbitrary files from the server's filesystem by crafting a malicious query value. This vulnerability can be exploited without authentication an…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-34031">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-3642 – A flaw was found in Moodle. A remote code execution risk was identified in the M...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3642</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3642</guid>
    <pubDate>Fri, 25 Apr 2025 15:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-3642</strong></p>
  <p>A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS EQUELLA repository. By default, this was only available to teachers and managers on sites with the EQUELLA repository enabled.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3642">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-3641 – A flaw was found in Moodle. A remote code execution risk was identified in the M...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3641</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3641</guid>
    <pubDate>Fri, 25 Apr 2025 15:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-3641</strong></p>
  <p>A flaw was found in Moodle. A remote code execution risk was identified in the Moodle LMS Dropbox repository. By default, this was only available to teachers and managers on sites with the Dropbox repository enabled.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3641">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-3638 – A flaw was found in Moodle. The analysis request action in the Brickfield tool d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3638</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3638</guid>
    <pubDate>Fri, 25 Apr 2025 15:15:37 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-3638</strong></p>
  <p>A flaw was found in Moodle. The analysis request action in the Brickfield tool did not include the necessary token to prevent a Cross-site request forgery (CSRF) risk.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3638">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-3625 – A security vulnerability was discovered in Moodle that can allow hackers to gain...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-3625</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-3625</guid>
    <pubDate>Fri, 25 Apr 2025 15:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-3625</strong></p>
  <p>A security vulnerability was discovered in Moodle that can allow hackers to gain access to sensitive information about students and prevent them from logging into their accounts, even after they had completed two-factor authentication (2FA).</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-3625">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-32044 – A flaw has been identified in Moodle where, on certain sites, unauthenticated us...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-32044</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-32044</guid>
    <pubDate>Fri, 25 Apr 2025 15:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-32044</strong></p>
  <p>A flaw has been identified in Moodle where, on certain sites, unauthenticated users could retrieve sensitive user data—including names, contact information, and hashed passwords—via stack traces returned by specific API calls. Sites with PHP configured with zend.exception_ignore_args = 1 in the php.ini file are not affected by this vulnerability.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-32044">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-45690 – A flaw was found in Moodle. Additional checks were required to ensure users can ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45690</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45690</guid>
    <pubDate>Wed, 20 Nov 2024 11:15:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-45690</strong></p>
  <p>A flaw was found in Moodle. Additional checks were required to ensure users can only delete their OAuth2-linked accounts.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45690">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43440 – A flaw was found in moodle. A local file may include risks when restoring block ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43440</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43440</guid>
    <pubDate>Thu, 07 Nov 2024 14:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43440</strong></p>
  <p>A flaw was found in moodle. A local file may include risks when restoring block backups.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43440">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43434 – The bulk message sending feature in Moodle's Feedback module's non-respondents r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43434</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43434</guid>
    <pubDate>Thu, 07 Nov 2024 14:15:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43434</strong></p>
  <p>The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43434">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43431 – A vulnerability was found in Moodle. Insufficient capability checks made it poss...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43431</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43431</guid>
    <pubDate>Thu, 07 Nov 2024 14:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43431</strong></p>
  <p>A vulnerability was found in Moodle. Insufficient capability checks made it possible to delete badges that a user does not have permission to access.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-862</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43431">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43428 – To address a cache poisoning risk in Moodle, additional validation for local sto...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43428</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43428</guid>
    <pubDate>Thu, 07 Nov 2024 14:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43428</strong></p>
  <p>To address a cache poisoning risk in Moodle, additional validation for local storage was required.</p>
  <p><strong>CVSS:</strong> 7.7 · <strong>CWE:</strong> CWE-345</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43428">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43425 – A flaw was found in Moodle. Additional restrictions are required to avoid a remo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43425</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43425</guid>
    <pubDate>Thu, 07 Nov 2024 14:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43425</strong></p>
  <p>A flaw was found in Moodle. Additional restrictions are required to avoid a remote code execution risk in calculated question types. Note: This requires the capability to add/update questions.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43425">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38275 – The cURL wrapper in Moodle retained the original request headers when following ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38275</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38275</guid>
    <pubDate>Tue, 18 Jun 2024 20:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38275</strong></p>
  <p>The cURL wrapper in Moodle retained the original request headers when following redirects, so HTTP authorization header information could be unintentionally sent in requests to redirect URLs.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-226</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38275">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-35133 – An issue in the logic used to check 0.0.0.0 against the cURL blocked hosts lists...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-35133</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-35133</guid>
    <pubDate>Thu, 22 Jun 2023 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-35133</strong></p>
  <p>An issue in the logic used to check 0.0.0.0 against the cURL blocked hosts lists resulted in an SSRF risk. This flaw affects Moodle versions 4.2, 4.1 to 4.1.3, 4.0 to 4.0.8, 3.11 to 3.11.14, 3.9 to 3.9.21 and earlier unsupported versions.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-35133">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-28333 – The Mustache pix helper contained a potential Mustache injection risk if combine...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28333</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28333</guid>
    <pubDate>Thu, 23 Mar 2023 21:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-28333</strong></p>
  <p>The Mustache pix helper contained a potential Mustache injection risk if combined with user input (note: This did not appear to be implemented/exploitable anywhere in the core Moodle LMS).</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28333">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-36396 – In Moodle, insufficient redirect handling made it possible to blindly bypass cUR...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36396</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36396</guid>
    <pubDate>Mon, 06 Mar 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-36396</strong></p>
  <p>In Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions, resulting in a blind SSRF risk.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36396">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-36395 – In Moodle, the file repository's URL parsing required additional recursion handl...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36395</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36395</guid>
    <pubDate>Mon, 06 Mar 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-36395</strong></p>
  <p>In Moodle, the file repository's URL parsing required additional recursion handling to mitigate the risk of recursion denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36395">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-36394 – In Moodle, a remote code execution risk was identified in the Shibboleth authent...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36394</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36394</guid>
    <pubDate>Mon, 06 Mar 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-36394</strong></p>
  <p>In Moodle, a remote code execution risk was identified in the Shibboleth authentication plugin.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-384</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36394">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-36393 – In Moodle, an SQL injection risk was identified in the library fetching a user's...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36393</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36393</guid>
    <pubDate>Mon, 06 Mar 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-36393</strong></p>
  <p>In Moodle, an SQL injection risk was identified in the library fetching a user's recent courses.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36393">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-36392 – In Moodle, an SQL injection risk was identified in the library fetching a user's...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-36392</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-36392</guid>
    <pubDate>Mon, 06 Mar 2023 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-36392</strong></p>
  <p>In Moodle, an SQL injection risk was identified in the library fetching a user's enrolled courses.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-36392">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-23923 – The vulnerability was found Moodle which exists due to insufficient limitations ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-23923</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-23923</guid>
    <pubDate>Fri, 17 Feb 2023 20:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-23923</strong></p>
  <p>The vulnerability was found Moodle which exists due to insufficient limitations on the "start page" preference. A remote attacker can set that preference for another user. The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-23923">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-45152 – A blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle. Th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-45152</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-45152</guid>
    <pubDate>Fri, 25 Nov 2022 19:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-45152</strong></p>
  <p>A blind Server-Side Request Forgery (SSRF) vulnerability was found in Moodle. This flaw exists due to insufficient validation of user-supplied input in LTI provider library. The library does not utilise Moodle's inbuilt cURL helper, which resulted in a blind SSRF risk. An attacker can send a specially crafted HTTP request and trick the application to initiate requests to arbitrary systems. This v…</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-45152">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-40314 – A remote code execution risk when restoring backup files originating from Moodle...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-40314</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-40314</guid>
    <pubDate>Fri, 30 Sep 2022 17:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-40314</strong></p>
  <p>A remote code execution risk when restoring backup files originating from Moodle 1.9 was identified.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-40314">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1756 – In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, insufficient input escaping was...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1756</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1756</guid>
    <pubDate>Tue, 16 Aug 2022 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1756</strong></p>
  <p>In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, insufficient input escaping was applied to the PHP unit webrunner admin tool.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1756">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14322 – In Moodle before 3.9.1, 3.8.4, 3.7.7 and 3.5.13, yui_combo needed to limit the a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14322</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14322</guid>
    <pubDate>Tue, 16 Aug 2022 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14322</strong></p>
  <p>In Moodle before 3.9.1, 3.8.4, 3.7.7 and 3.5.13, yui_combo needed to limit the amount of files it can load to help mitigate the risk of denial of service.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14322">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-14321 – In Moodle before 3.9.1, 3.8.4, 3.7.7 and 3.5.13, teachers of a course were able ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-14321</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-14321</guid>
    <pubDate>Tue, 16 Aug 2022 21:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-14321</strong></p>
  <p>In Moodle before 3.9.1, 3.8.4, 3.7.7 and 3.5.13, teachers of a course were able to assign themselves the manager role within that course.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-14321">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-35650 – The vulnerability was found in Moodle, occurs due to input validation error when...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-35650</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-35650</guid>
    <pubDate>Mon, 25 Jul 2022 16:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-35650</strong></p>
  <p>The vulnerability was found in Moodle, occurs due to input validation error when importing lesson questions. This insufficient path checks results in arbitrary file read risk. This vulnerability allows a remote attacker to perform directory traversal attacks. The capability to access this feature is only available to teachers, managers and admins by default.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-35650">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-35649 – The vulnerability was found in Moodle, occurs due to improper input validation w...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-35649</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-35649</guid>
    <pubDate>Mon, 25 Jul 2022 16:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-35649</strong></p>
  <p>The vulnerability was found in Moodle, occurs due to improper input validation when parsing PostScript code. An omitted execution parameter results in a remote code execution risk for sites running GhostScript versions older than 9.50. Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-35649">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-30600 – A flaw was found in moodle where logic used to count failed login attempts could...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-30600</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-30600</guid>
    <pubDate>Wed, 18 May 2022 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-30600</strong></p>
  <p>A flaw was found in moodle where logic used to count failed login attempts could result in the account lockout threshold being bypassed.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-682</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-30600">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-30599 – A flaw was found in moodle where an SQL injection risk was identified in Badges ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-30599</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-30599</guid>
    <pubDate>Wed, 18 May 2022 18:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-30599</strong></p>
  <p>A flaw was found in moodle where an SQL injection risk was identified in Badges code relating to configuring criteria.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-30599">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-28986 – LMS Doctor Simple 2 Factor Authentication Plugin For Moodle Affected: 2021072900...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-28986</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-28986</guid>
    <pubDate>Tue, 10 May 2022 19:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-28986</strong></p>
  <p>LMS Doctor Simple 2 Factor Authentication Plugin For Moodle Affected: 2021072900 has an Insecure direct object references (IDOR) vulnerability, which allows remote attackers to update sensitive records such as email, password and phone number of other user accounts.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-639</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-28986">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32476 – A denial-of-service risk was identified in the draft files area, due to it not r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32476</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32476</guid>
    <pubDate>Fri, 11 Mar 2022 18:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32476</strong></p>
  <p>A denial-of-service risk was identified in the draft files area, due to it not respecting user file upload limits. Moodle versions 3.10 to 3.10.3, 3.9 to 3.9.6, 3.8 to 3.8.8, 3.5 to 3.5.17 and earlier unsupported versions are affected.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32476">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-32474 – An SQL injection risk existed on sites with MNet enabled and configured, via an ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-32474</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-32474</guid>
    <pubDate>Fri, 11 Mar 2022 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-32474</strong></p>
  <p>An SQL injection risk existed on sites with MNet enabled and configured, via an XML-RPC call from the connected peer host. Note that this required site administrator access or access to the keypair. Moodle 3.10 to 3.10.3, 3.9 to 3.9.6, 3.8 to 3.8.8, 3.5 to 3.5.17 and earlier unsupported versions are affected.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-32474">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-0335 – A flaw was found in Moodle in versions 3.11 to 3.11.4, 3.10 to 3.10.8, 3.9 to 3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-0335</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-0335</guid>
    <pubDate>Tue, 25 Jan 2022 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-0335</strong></p>
  <p>A flaw was found in Moodle in versions 3.11 to 3.11.4, 3.10 to 3.10.8, 3.9 to 3.9.11 and earlier unsupported versions. The "delete badge alignment" functionality did not include the necessary token check to prevent a CSRF risk.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-0335">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-0332 – A flaw was found in Moodle in versions 3.11 to 3.11.4. An SQL injection risk was...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-0332</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-0332</guid>
    <pubDate>Tue, 25 Jan 2022 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-0332</strong></p>
  <p>A flaw was found in Moodle in versions 3.11 to 3.11.4. An SQL injection risk was identified in the h5p activity web service responsible for fetching user attempt data.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-0332">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-43559 – A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-43559</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-43559</guid>
    <pubDate>Mon, 22 Nov 2021 16:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-43559</strong></p>
  <p>A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. The "delete related badge" functionality did not include the necessary token check to prevent a CSRF risk.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-43559">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-3943 – A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-3943</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-3943</guid>
    <pubDate>Mon, 22 Nov 2021 16:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-3943</strong></p>
  <p>A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. A remote code execution risk when restoring backup files was identified.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-3943">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2021-21809 – A command execution vulnerability exists in the default legacy spellchecker plug...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-21809</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-21809</guid>
    <pubDate>Wed, 23 Jun 2021 22:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2021-21809</strong></p>
  <p>A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have administrator privileges to exploit this vulnerabilities.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-21809">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2021-20187 – It was found in Moodle before version 3.10.1, 3.9.4, 3.8.7 and 3.5.16 that it wa...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2021-20187</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2021-20187</guid>
    <pubDate>Thu, 28 Jan 2021 19:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2021-20187</strong></p>
  <p>It was found in Moodle before version 3.10.1, 3.9.4, 3.8.7 and 3.5.16 that it was possible for site administrators to execute arbitrary PHP scripts via a PHP include used during Shibboleth authentication.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2021-20187">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25630 – A vulnerability was found in Moodle where the decompressed size of zip files was...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25630</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25630</guid>
    <pubDate>Tue, 08 Dec 2020 01:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25630</strong></p>
  <p>A vulnerability was found in Moodle where the decompressed size of zip files was not checked against available user quota before unzipping them, which could lead to a denial of service risk. This affects versions 3.9 to 3.9.1, 3.8 to 3.8.4, 3.7 to 3.7.7, 3.5 to 3.5.13 and earlier unsupported versions. Fixed in 3.9.2, 3.8.5, 3.7.8 and 3.5.14.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25630">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25629 – A vulnerability was found in Moodle where users with "Log in as" capability in a...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25629</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25629</guid>
    <pubDate>Tue, 08 Dec 2020 01:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25629</strong></p>
  <p>A vulnerability was found in Moodle where users with "Log in as" capability in a course context (typically, course managers) may gain access to some site administration capabilities by "logging in as" a System manager. This affects 3.9 to 3.9.1, 3.8 to 3.8.4, 3.7 to 3.7.7, 3.5 to 3.5.13 and earlier unsupported versions. This is fixed in 3.9.2, 3.8.5, 3.7.8 and 3.5.14.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25629">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25699 – In moodle, insufficient capability checks could lead to users with the ability t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25699</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25699</guid>
    <pubDate>Thu, 19 Nov 2020 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25699</strong></p>
  <p>In moodle, insufficient capability checks could lead to users with the ability to course restore adding additional capabilities to roles within that course. Versions affected: 3.9 to 3.9.2, 3.8 to 3.8.5, 3.7 to 3.7.8, 3.5 to 3.5.14 and earlier unsupported versions. This is fixed in moodle 3.9.3, 3.8.6, 3.7.9, 3.5.15, and 3.10.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-863</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25699">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-25698 – Users' enrollment capabilities were not being sufficiently checked in Moodle whe...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-25698</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-25698</guid>
    <pubDate>Thu, 19 Nov 2020 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-25698</strong></p>
  <p>Users' enrollment capabilities were not being sufficiently checked in Moodle when they are restored into an existing course. This could lead to them unenrolling users without having permission to do so. Versions affected: 3.5 to 3.5.14, 3.7 to 3.7.8, 3.8 to 3.8.5, 3.9 to 3.9.2 and earlier unsupported versions. Fixed in 3.9.3, 3.8.6, 3.7.9, 3.5.15, and 3.10.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-25698">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-10738 – A flaw was found in Moodle versions 3.8 before 3.8.3, 3.7 before 3.7.6, 3.6 befo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-10738</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-10738</guid>
    <pubDate>Thu, 21 May 2020 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-10738</strong></p>
  <p>A flaw was found in Moodle versions 3.8 before 3.8.3, 3.7 before 3.7.6, 3.6 before 3.6.10, 3.5 before 3.5.12 and earlier unsupported versions. It was possible to create a SCORM package in such a way that when added to a course, it could be interacted with via web services in order to achieve remote code execution.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-10738">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-14880 – A vulnerability was found in Moodle versions 3.7 before 3.7.3, 3.6 before 3.6.7,...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-14880</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-14880</guid>
    <pubDate>Tue, 31 Mar 2020 16:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-14880</strong></p>
  <p>A vulnerability was found in Moodle versions 3.7 before 3.7.3, 3.6 before 3.6.7, 3.5 before 3.5.9 and earlier. OAuth 2 providers who do not verify users' email address changes require additional verification during sign-up to reduce the risk of account compromise.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-14880">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-1692 – Moodle before version 3.7.2 is vulnerable to information exposure of service tok...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-1692</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-1692</guid>
    <pubDate>Mon, 17 Feb 2020 16:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-1692</strong></p>
  <p>Moodle before version 3.7.2 is vulnerable to information exposure of service tokens for users enrolled in the same course.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-1692">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-1170 – Moodle before 2.2.2 has an external enrolment plugin context check issue where c...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1170</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1170</guid>
    <pubDate>Thu, 14 Nov 2019 17:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-1170</strong></p>
  <p>Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-354</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1170">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-1168 – Moodle before 2.2.2 has a password and web services issue where when the user pr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1168</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1168</guid>
    <pubDate>Thu, 14 Nov 2019 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-1168</strong></p>
  <p>Moodle before 2.2.2 has a password and web services issue where when the user profile is updated the user password is reset if not specified.</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1168">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-1156 – Moodle before 2.2.2 has users' private files included in course backups</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1156</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1156</guid>
    <pubDate>Thu, 14 Nov 2019 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-1156</strong></p>
  <p>Moodle before 2.2.2 has users' private files included in course backups</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-532</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1156">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-1155 – Moodle has a database activity export permission issue where the export function...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-1155</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-1155</guid>
    <pubDate>Thu, 14 Nov 2019 16:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-1155</strong></p>
  <p>Moodle has a database activity export permission issue where the export function of the database activity module exports all entries even those from groups the user does not belong to</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-1155">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2019-15536 – The Acclaim block plugin before 2019-06-26 for Moodle allows SQL Injection via d...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-15536</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-15536</guid>
    <pubDate>Fri, 23 Aug 2019 18:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2019-15536</strong></p>
  <p>The Acclaim block plugin before 2019-06-26 for Moodle allows SQL Injection via delete_records.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-15536">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10186 – A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. A sesskey (CSRF)...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10186</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10186</guid>
    <pubDate>Wed, 31 Jul 2019 22:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10186</strong></p>
  <p>A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. A sesskey (CSRF) token was not being utilised by the XML loading/unloading admin tool.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10186">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-10154 – A flaw was found in Moodle before versions 3.7, 3.6.4. A web service fetching me...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-10154</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-10154</guid>
    <pubDate>Wed, 26 Jun 2019 19:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-10154</strong></p>
  <p>A flaw was found in Moodle before versions 3.7, 3.6.4. A web service fetching messages was not restricted to the current user's conversations.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-10154">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-3849 – A vulnerability was found in moodle before versions 3.6.3, 3.5.5 and 3.4.8. User...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-3849</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-3849</guid>
    <pubDate>Tue, 26 Mar 2019 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-3849</strong></p>
  <p>A vulnerability was found in moodle before versions 3.6.3, 3.5.5 and 3.4.8. Users could assign themselves an escalated role within courses or content accessed via LTI, by modifying the request to the LTI publisher site.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-3849">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-6970 – Moodle 3.5.x before 3.5.4 allows SSRF.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-6970</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-6970</guid>
    <pubDate>Thu, 21 Mar 2019 16:01:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-6970</strong></p>
  <p>Moodle 3.5.x before 3.5.4 allows SSRF.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-6970">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-14631 – moodle before versions 3.5.2, 3.4.5, 3.3.8 is vulnerable to a boost theme - blog...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-14631</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-14631</guid>
    <pubDate>Mon, 17 Sep 2018 20:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-14631</strong></p>
  <p>moodle before versions 3.5.2, 3.4.5, 3.3.8 is vulnerable to a boost theme - blog search GET parameter insufficiently filtered. The breadcrumb navigation provided by Boost theme when displaying search results of a blog were insufficiently filtered, which could result in reflected XSS if a user followed a malicious link containing JavaScript in the search parameter.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-14631">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-14630 – moodle before versions 3.5.2, 3.4.5, 3.3.8, 3.1.14 is vulnerable to an XML impor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-14630</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-14630</guid>
    <pubDate>Mon, 17 Sep 2018 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-14630</strong></p>
  <p>moodle before versions 3.5.2, 3.4.5, 3.3.8, 3.1.14 is vulnerable to an XML import of ddwtos could lead to intentional remote code execution. When importing legacy 'drag and drop into text' (ddwtos) type quiz questions, it was possible to inject and execute PHP code from within the imported questions, either intentionally or by importing questions from an untrusted source.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-14630">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-10891 – A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. When a q...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-10891</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-10891</guid>
    <pubDate>Tue, 10 Jul 2018 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-10891</strong></p>
  <p>A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. When a quiz question bank is imported, it was possible for the question preview that is displayed to execute JavaScript that is written into the question bank.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-10891">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1137 – An issue was discovered in Moodle 3.x. By substituting URLs in portfolios, users...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1137</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1137</guid>
    <pubDate>Fri, 25 May 2018 12:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1137</strong></p>
  <p>An issue was discovered in Moodle 3.x. By substituting URLs in portfolios, users can instantiate any class. This can also be exploited by users who are logged in as guests to create a DDoS attack.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1137">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1133 – An issue was discovered in Moodle 3.x. A Teacher creating a Calculated question ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1133</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1133</guid>
    <pubDate>Fri, 25 May 2018 12:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1133</strong></p>
  <p>An issue was discovered in Moodle 3.x. A Teacher creating a Calculated question can intentionally cause remote code execution on the server, aka eval injection.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1133">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2018-1082 – A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account usi...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2018-1082</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2018-1082</guid>
    <pubDate>Wed, 04 Apr 2018 21:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2018-1082</strong></p>
  <p>A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account using OAuth2 authentication method was once confirmed but later suspended, the user could still login to the site.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2018-1082">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-3734 – Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0 t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-3734</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-3734</guid>
    <pubDate>Thu, 20 Apr 2017 21:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-3734</strong></p>
  <p>Cross-site request forgery (CSRF) vulnerability in markposts.php in Moodle 3.0 through 3.0.3, 2.9 through 2.9.5, 2.8 through 2.8.11, 2.7 through 2.7.13 and earlier allows remote attackers to hijack the authentication of users for requests that marks forum posts as read.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-3734">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-2641 – In Moodle 2.x and 3.x, SQL injection can occur via user preferences.</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-2641</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-2641</guid>
    <pubDate>Sun, 26 Mar 2017 18:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-2641</strong></p>
  <p>In Moodle 2.x and 3.x, SQL injection can occur via user preferences.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-2641">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-7038 – In Moodle 2.x and 3.x, web service tokens are not invalidated when the user pass...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-7038</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-7038</guid>
    <pubDate>Fri, 20 Jan 2017 08:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-7038</strong></p>
  <p>In Moodle 2.x and 3.x, web service tokens are not invalidated when the user password is changed or forced to be changed.</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-640</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-7038">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-9187 – Unrestricted file upload vulnerability in the double extension support in the "i...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-9187</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-9187</guid>
    <pubDate>Fri, 04 Nov 2016 10:59:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-9187</strong></p>
  <p>Unrestricted file upload vulnerability in the double extension support in the "image" module in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-9187">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-9186 – Unrestricted file upload vulnerability in the "legacy course files" and "file ma...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-9186</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-9186</guid>
    <pubDate>Fri, 04 Nov 2016 10:59:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-9186</strong></p>
  <p>Unrestricted file upload vulnerability in the "legacy course files" and "file manager" modules in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-9186">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-7919 – Moodle 3.1.2 allows remote attackers to obtain sensitive information via unspeci...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-7919</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-7919</guid>
    <pubDate>Fri, 28 Oct 2016 15:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-7919</strong></p>
  <p>Moodle 3.1.2 allows remote attackers to obtain sensitive information via unspecified vectors, related to a "SQL Injection" issue affecting the Administration panel function in the installation process component.  NOTE: the vendor disputes the relevance of this report, noting that "the person who is installing Moodle must know database access credentials and they can access the database directly;…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-7919">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2016-2157 – Cross-site request forgery (CSRF) vulnerability in mod/assign/adminmanageplugins...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2016-2157</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2016-2157</guid>
    <pubDate>Sun, 22 May 2016 20:59:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2016-2157</strong></p>
  <p>Cross-site request forgery (CSRF) vulnerability in mod/assign/adminmanageplugins.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allows remote attackers to hijack the authentication of administrators for requests that manage Assignment plugins.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2016-2157">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-5338 – Multiple cross-site request forgery (CSRF) vulnerabilities in the lesson module ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-5338</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-5338</guid>
    <pubDate>Mon, 22 Feb 2016 05:59:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-5338</strong></p>
  <p>Multiple cross-site request forgery (CSRF) vulnerabilities in the lesson module in Moodle through 2.6.11, 2.7.x before 2.7.11, 2.8.x before 2.8.9, and 2.9.x before 2.9.3 allow remote attackers to hijack the authentication of arbitrary users for requests to (1) mod/lesson/mediafile.php or (2) mod/lesson/view.php.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-5338">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-5267 – lib/moodlelib.php in Moodle through 2.6.11, 2.7.x before 2.7.10, 2.8.x before 2...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-5267</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-5267</guid>
    <pubDate>Mon, 22 Feb 2016 05:59:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-5267</strong></p>
  <p>lib/moodlelib.php in Moodle through 2.6.11, 2.7.x before 2.7.10, 2.8.x before 2.8.8, and 2.9.x before 2.9.2 relies on the PHP mt_rand function to implement the random_string and complex_random_string functions, which makes it easier for remote attackers to predict password-recovery tokens via a brute-force approach.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-5267">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-3272 – Open redirect vulnerability in the clean_param function in lib/moodlelib.php in ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-3272</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-3272</guid>
    <pubDate>Mon, 22 Feb 2016 05:59:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-3272</strong></p>
  <p>Open redirect vulnerability in the clean_param function in lib/moodlelib.php in Moodle through 2.6.11, 2.7.x before 2.7.9, 2.8.x before 2.8.7, and 2.9.x before 2.9.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via vectors involving an HTTP Referer header that has a substring match with a local URL.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-3272">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-7845 – The generate_password function in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-7845</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-7845</guid>
    <pubDate>Mon, 24 Nov 2014 11:59:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-7845</strong></p>
  <p>The generate_password function in Moodle through 2.4.11, 2.5.x before 2.5.9, 2.6.x before 2.6.6, and 2.7.x before 2.7.3 does not provide a sufficient number of possible temporary passwords, which allows remote attackers to obtain access via a brute-force attack.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-255</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-7845">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2014-3541 – The Repositories component in Moodle through 2.3.11, 2.4.x before 2.4.11, 2.5.x ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2014-3541</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2014-3541</guid>
    <pubDate>Tue, 29 Jul 2014 11:10:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2014-3541</strong></p>
  <p>The Repositories component in Moodle through 2.3.11, 2.4.x before 2.4.11, 2.5.x before 2.5.7, 2.6.x before 2.6.4, and 2.7.x before 2.7.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary code via serialized data associated with an add-on.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2014-3541">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-5674 – badges/external.php in Moodle 2.5.x before 2.5.2 does not properly handle an obj...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-5674</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-5674</guid>
    <pubDate>Mon, 16 Sep 2013 13:02:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-5674</strong></p>
  <p>badges/external.php in Moodle 2.5.x before 2.5.2 does not properly handle an object obtained by unserializing a description of an external badge, which allows remote attackers to conduct PHP object injection attacks via unspecified vectors, as demonstrated by overwriting the value of the userid parameter.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-5674">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-4313 – Moodle through 2.2.11, 2.3.x before 2.3.9, 2.4.x before 2.4.6, and 2.5.x before ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-4313</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-4313</guid>
    <pubDate>Mon, 16 Sep 2013 13:02:48 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-4313</strong></p>
  <p>Moodle through 2.2.11, 2.3.x before 2.3.9, 2.4.x before 2.4.6, and 2.5.x before 2.5.2 does not prevent use of '\0' characters in query strings, which might allow remote attackers to conduct SQL injection attacks against Microsoft SQL Server via a crafted string.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-4313">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2012-0801 – lib/formslib.php in Moodle 2.1.x before 2.1.4 and 2.2.x before 2.2.1 does not pr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2012-0801</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2012-0801</guid>
    <pubDate>Tue, 17 Jul 2012 10:20:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2012-0801</strong></p>
  <p>lib/formslib.php in Moodle 2.1.x before 2.1.4 and 2.2.x before 2.2.1 does not properly handle multiple instances of a form element, which has unspecified impact and remote attack vectors.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2012-0801">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2010-1615 – Multiple SQL injection vulnerabilities in Moodle 1.8.x before 1.8.12 and 1.9.x b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2010-1615</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2010-1615</guid>
    <pubDate>Thu, 29 Apr 2010 21:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2010-1615</strong></p>
  <p>Multiple SQL injection vulnerabilities in Moodle 1.8.x before 1.8.12 and 1.9.x before 1.9.8 allow remote attackers to execute arbitrary SQL commands via vectors related to (1) the add_to_log function in mod/wiki/view.php in the wiki module, or (2) "data validation in some forms elements" related to lib/form/selectgroups.php.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2010-1615">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2009-4304 – Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password sal...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-4304</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-4304</guid>
    <pubDate>Wed, 16 Dec 2009 01:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2009-4304</strong></p>
  <p>Moodle 1.8 before 1.8.11 and 1.9 before 1.9.7 does not use a random password salt in config.php, which makes it easier for attackers to conduct brute-force password guessing attacks.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-255</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-4304">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2009-3778 – SQL injection vulnerability in Moodle Course List 6.x before 6.x-1.2, a module f...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-3778</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-3778</guid>
    <pubDate>Mon, 26 Oct 2009 17:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2009-3778</strong></p>
  <p>SQL injection vulnerability in Moodle Course List 6.x before 6.x-1.2, a module for Drupal, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-3778">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2008-6124 – SQL injection vulnerability in the hotpot_delete_selected_attempts function in r...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2008-6124</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2008-6124</guid>
    <pubDate>Fri, 13 Feb 2009 01:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2008-6124</strong></p>
  <p>SQL injection vulnerability in the hotpot_delete_selected_attempts function in report.php in the HotPot module in Moodle 1.6 before 1.6.7, 1.7 before 1.7.5, 1.8 before 1.8.6, and 1.9 before 1.9.2 allows remote attackers to execute arbitrary SQL commands via a crafted selected attempt.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2008-6124">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2007-6538 – SQL injection vulnerability in ing/blocks/mrbs/code/web/view_entry.php in the MR...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-6538</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-6538</guid>
    <pubDate>Thu, 27 Dec 2007 23:46:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2007-6538</strong></p>
  <p>SQL injection vulnerability in ing/blocks/mrbs/code/web/view_entry.php in the MRBS plugin for Moodle allows remote attackers to execute arbitrary SQL commands via the id parameter.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-6538">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2007-1647 – Moodle 1.5.2 and earlier stores sensitive information under the web root with in...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-1647</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-1647</guid>
    <pubDate>Sat, 24 Mar 2007 00:19:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2007-1647</strong></p>
  <p>Moodle 1.5.2 and earlier stores sensitive information under the web root with insufficient access control, and provides directory listings, which allows remote attackers to obtain user names, password hashes, and other sensitive information via a direct request for session (sess_*) files in moodledata/sessions/.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-1647">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2007-1429 – Multiple PHP remote file inclusion vulnerabilities in Moodle 1.7.1 allow remote ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2007-1429</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2007-1429</guid>
    <pubDate>Tue, 13 Mar 2007 01:19:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2007-1429</strong></p>
  <p>Multiple PHP remote file inclusion vulnerabilities in Moodle 1.7.1 allow remote attackers to execute arbitrary PHP code via a URL in the cmd parameter to (1) admin/utfdbmigrate.php or (2) filter.php.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2007-1429">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-7048 – Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.5 allow remo...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-7048</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-7048</guid>
    <pubDate>Sat, 24 Feb 2007 00:28:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-7048</strong></p>
  <p>Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.5 allow remote attackers to execute arbitrary PHP code via a URL in the (1) clarolineRepositorySys parameter to (a) atutor.inc.php (b) db-generic.inc.php (c) docebo.inc.php (d) dokeos.1.6.inc.php (e) dokeos.inc.php (f) ganesha.inc.php (g) mambo.inc.php (h) moodle.inc.php (i) phpnuke.inc.php (j) postnuke.inc.php and (k) spip.inc.p…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-7048">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2006-4935 – The Database module in Moodle before 1.6.2 does not properly handle uploaded fil...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-4935</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-4935</guid>
    <pubDate>Sat, 23 Sep 2006 00:07:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2006-4935</strong></p>
  <p>The Database module in Moodle before 1.6.2 does not properly handle uploaded files, which has unspecified impact and remote attack vectors.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-4935">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2006-4936 – Moodle before 1.6.2 does not properly validate the module instance id when creat...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-4936</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-4936</guid>
    <pubDate>Sat, 23 Sep 2006 00:07:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2006-4936</strong></p>
  <p>Moodle before 1.6.2 does not properly validate the module instance id when creating a course module object, which has unspecified impact and remote attack vectors.</p>
  <p><strong>CVSS:</strong> 10.0 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-4936">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-4785 – SQL injection vulnerability in blog/edit.php in Moodle 1.6.1 and earlier allows ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-4785</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-4785</guid>
    <pubDate>Thu, 14 Sep 2006 10:07:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-4785</strong></p>
  <p>SQL injection vulnerability in blog/edit.php in Moodle 1.6.1 and earlier allows remote attackers to execute arbitrary SQL commands via the format parameter as stored in the $blogEntry variable, which is not properly handled by the insert_record function, which calls _adodb_column_sql in the adodb layer (lib/adodb/adodb-lib.inc.php), which does not convert the data type to an int.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-4785">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-3951 – PHP remote file inclusion vulnerability in moodle.php in Mam-moodle alpha compon...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-3951</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-3951</guid>
    <pubDate>Tue, 01 Aug 2006 21:04:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-3951</strong></p>
  <p>PHP remote file inclusion vulnerability in moodle.php in Mam-moodle alpha component (com_moodle) for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-3951">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2006-0146 – The server.php test script in ADOdb for PHP before 4.70, as used in multiple pro...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2006-0146</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2006-0146</guid>
    <pubDate>Mon, 09 Jan 2006 23:03:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2006-0146</strong></p>
  <p>The server.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PHPOpenChat, (7) MAXdev MD-Pro, and (8) MediaBeez, when the MySQL root password is empty, allows remote attackers to execute arbitrary SQL commands via the sql parameter.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2006-0146">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
