Loading HuntDB...

moodle

41 Versions 89 CVEs

Versions

3.11

MAJOR_MINOR 2 CVEs

3.7 to 3.7.1, 3.6 to 3.6.5, 3.5 to 3.5.7 and earlier unsupported versions

OTHER 5 CVEs

3.8 to 3.8.4

OTHER 3 CVEs

3.8

MAJOR_MINOR 1 CVE

Moodle 3.10

OTHER 1 CVE

3.8.2, 3.7.5, 3.6.9 and 3.5.11

OTHER 1 CVE

3.8 to 3.8.1, 3.7 to 3.7.4, 3.6 to 3.6.8, 3.5 to 3.5.10 and earlier unsupported versions

OTHER 2 CVEs

earlier unsupported versions

OTHER 3 CVEs

3.5 to 3.5.13

OTHER 3 CVEs

3.9 to 3.9.1, 3.8 to 3.8.4 and 3.7 to 3.7.7

OTHER 1 CVE

Fixed in moodle 4.0.5, moodle 3.11.11

OTHER 1 CVE

Fixed in moodle 4.0.2, moodle 3.11.8, moodle 3.9.15

OTHER 5 CVEs

3.11, 3.10 to 3.10.4, 3.9 to 3.9.7 and earlier unsupported versions

OTHER 10 CVEs

affected 4.0 to 4.0.2, 3.11 to 3.11.8, 3.9 to 3.9.15 and earlier unsupported versions

OTHER 1 CVE

3.9 to 3.9.1

OTHER 4 CVEs

3.7 to 3.7.7

OTHER 3 CVEs

Moodle 3.9, 3.8 to 3.8.3, 3.7 to 3.7.6, 3.5 to 3.5.12 and earlier unsupported versions

OTHER 2 CVEs

Moodle 3.9, 3.8 to 3.8.3 and 3.7 to 3.7.6

OTHER 1 CVE

Fixed in moodle 4.0.5, moodle 3.11.11, moodle 3.9.18

OTHER 3 CVEs

3.10 to 3.10.3, 3.9 to 3.9.6, 3.8 to 3.8.8

OTHER 1 CVE

Fixed in 3.10.2, 3.9.5, 3.8.8, 3.5.17

OTHER 5 CVEs

Fixed in 3.5.15

OTHER 4 CVEs

3.11 to 3.11.2, 3.10 to 3.10.6, 3.9 to 3.9.9 and earlier unsupported versions

OTHER 5 CVEs

moodle 3.10.1, moodle 3.9.4, moodle 3.8.7

OTHER 1 CVE

4.0 to 4.0.3, 3.11 to 3.11.9, 3.9 to 3.9.16 and earlier unsupported versions

OTHER 4 CVEs

Fixed in 3.9.3, Fixed in 3.10

OTHER 1 CVE

Fixed in 3.7.9

OTHER 5 CVEs

3.10 to 3.10.3

OTHER 1 CVE

moodle 3.11.5

OTHER 1 CVE

Fixed in 3.10

OTHER 5 CVEs

Fixed in 3.8.6

OTHER 5 CVEs

3.10 to 3.10.3, 3.9 to 3.9.6, 3.8 to 3.8.8, 3.5 to 3.5.17

OTHER 4 CVEs

moodle 3.10.1

OTHER 1 CVE

moodle 3.11.4, moodle 3.10.8 and moodle 3.9.11

OTHER 4 CVEs

moodle 3.11.5, moodle 3.10.9 and moodle 3.9.12

OTHER 3 CVEs

3.10 to 3.10.3, 3.9 to 3.9.6 and 3.8 to 3.8.8

OTHER 1 CVE

moodle 3.11.6, moodle 3.10.10, moodle 3.9.13

OTHER 3 CVEs

moodle 3.10.1, moodle 3.9.4, moodle 3.8.7, moodle 3.5.16

OTHER 3 CVEs

Fixed in 3.9.3

OTHER 5 CVEs

Affects:4.0, 3.11 to 3.11.6, 3.10 to 3.10.10, 3.9 to 3.9.13 and earlier unsupported versions

OTHER 5 CVEs

moodle 4.0.3 and moodle 3.11.9

OTHER 1 CVE

Recent CVEs

CVE-2022-40208

In Moodle, insufficient limitations in some quiz web services made it possible for students to bypass sequential navigation during a quiz attempt.

UNKNOWN Mar 24, 2023

CVE-2021-36397

In Moodle, insufficient capability checks meant message deletions were not limited to the current user.

UNKNOWN Mar 06, 2023

CVE-2021-36393

In Moodle, an SQL injection risk was identified in the library fetching a user's recent courses.

UNKNOWN Mar 06, 2023

CVE-2021-36401

In Moodle, ID numbers exported in HTML data formats required additional sanitizing to prevent a local stored XSS risk.

UNKNOWN Mar 06, 2023

CVE-2021-36400

In Moodle, insufficient capability checks made it possible to remove other users' calendar URL subscriptions.

UNKNOWN Mar 06, 2023

CVE-2021-36403

In Moodle, in some circumstances, email notifications of messages could have the link back to the original message hidden by HTML, which may pose a phishing risk.

UNKNOWN Mar 06, 2023

CVE-2021-36399

In Moodle, ID numbers displayed in the quiz override screens required additional sanitizing to prevent a stored XSS risk.

UNKNOWN Mar 06, 2023

CVE-2021-36396

In Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions, resulting in a blind SSRF risk.

UNKNOWN Mar 06, 2023

CVE-2021-36402

In Moodle, Users' names required additional sanitizing in the account confirmation email, to prevent a self-registration phishing risk.

UNKNOWN Mar 06, 2023

CVE-2021-36394

In Moodle, a remote code execution risk was identified in the Shibboleth authentication plugin.

UNKNOWN Mar 06, 2023