← volver
CVE-2025-26531

IDOR in badges allows disabling of arbitrary badges

CVSS 3.1 LOWEPSS 0.3%CWE-863
Insufficient capability checks made it possible to disable badges a user does not have permission to access.
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N
Productos afectados
Moodle Project · moodle

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →