7.5
CVSSv3

CVE-2023-35133

Published: 22/06/2023 Updated: 19/04/2024
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue in the logic used to check 0.0.0.0 against the cURL blocked hosts lists resulted in an SSRF risk. This flaw affects Moodle versions 4.2, 4.1 to 4.1.3, 4.0 to 4.0.8, 3.11 to 3.11.14, 3.9 to 3.9.21 and previous versions unsupported versions.

Vulnerable Product Search on Vulmon Subscribe to Product

moodle moodle 4.2.0

moodle moodle