Vulnerabilities > Moodle
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-11-11 | CVE-2024-43435 | Unspecified vulnerability in Moodle A flaw was found in moodle. | 5.3 |
2024-11-11 | CVE-2024-43437 | Unspecified vulnerability in Moodle A flaw was found in moodle. | 6.1 |
2024-11-07 | CVE-2024-43425 | Unspecified vulnerability in Moodle A flaw was found in Moodle. | 8.1 |
2024-11-07 | CVE-2024-43428 | Unspecified vulnerability in Moodle To address a cache poisoning risk in Moodle, additional validation for local storage was required. | 7.1 |
2024-11-07 | CVE-2024-43431 | Unspecified vulnerability in Moodle A vulnerability was found in Moodle. | 7.5 |
2024-11-07 | CVE-2024-43434 | Unspecified vulnerability in Moodle The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability. | 8.1 |
2024-11-07 | CVE-2024-43440 | Unspecified vulnerability in Moodle A flaw was found in moodle. | 7.5 |
2024-06-24 | CVE-2024-34312 | Cross-site Scripting vulnerability in Moodle Virtual Programming LAB Virtual Programming Lab for Moodle up to v4.2.3 was discovered to contain a cross-site scripting (XSS) vulnerability via the component vplide.js. | 6.1 |
2024-06-18 | CVE-2024-38276 | Cross-Site Request Forgery (CSRF) vulnerability in multiple products Incorrect CSRF token checks resulted in multiple CSRF risks. | 8.8 |
2024-05-31 | CVE-2024-34008 | Cross-Site Request Forgery (CSRF) vulnerability in Moodle Actions in the admin management of analytics models did not include the necessary token to prevent a CSRF risk. | 8.8 |