Moodle
15 known vulnerabilities
Top Products
Moodle LMS 4.0 contains a cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious s
A denial-of-service vulnerability was identified in Moodle’s TeX formula editor. When rendering TeX content using mimete
A vulnerability was found in a Moodle TeX filter administrative setting where insufficient sanitization of configuration
A flaw was identified in Moodle’s backup restore functionality where specially crafted backup files were not properly va
A flaw was found in moodle. During anonymous assignment submissions, user identifiers were inadvertently exposed in URLs
A flaw was found in Moodle. An authorization logic flaw, specifically due to incomplete role checks during the badge awa
A flaw was found in mooodle. A remote attacker could exploit a reflected Cross-Site Scripting (XSS) vulnerability in the
A flaw was found in Moodle. A remote attacker could exploit a lack of proper rate limiting in the confirmation email ser
A flaw was found in Moodle. An open redirect vulnerability in the OAuth login flow allows a remote attacker to redirect
A flaw was found in moodle. This formula injection vulnerability occurs when data fields are exported without proper esc
A flaw was found in moodle. This vulnerability, known as Cross-Site Scripting (XSS), occurs due to insufficient checks o
A flaw was found in Moodle. This cross-site scripting (XSS) vulnerability, caused by improper sanitization of AI prompt
A flaw was found in Moodle. This authentication bypass vulnerability allows suspended users to authenticate through the
A flaw was found in Moodle. An attacker with access to the restore interface could trigger server-side execution of arbi
Moodle 3.10.3 contains a persistent cross-site scripting vulnerability in the calendar event subtitle field that allows
Frequently Asked Questions
How many CVEs affect Moodle?
Moodle has 15 CVE records in our database, including 0 critical and 8 high severity vulnerabilities.
What are the most severe Moodle vulnerabilities?
Moodle has 0 critical severity (CVSS 9.0+) and 8 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Moodle vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Moodle products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Moodle Vulnerabilities
CyberStrike scans your infrastructure for Moodle vulnerabilities and provides real-time remediation guidance.
Get Started