PT-2025-17920 · Moodle+2 · Moodle+2

Ostapbender

·

Published

2025-04-22

·

Updated

2026-01-26

·

CVE-2025-3645

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Moodle (affected versions not specified)
Description A flaw was found in the messaging web service of Moodle, where insufficient capability checks allowed users to view other users' names and online statuses.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-6924
ALT-PU-2025-7344
BDU:2025-05098
BIT-MOODLE-2025-3645
CVE-2025-3645
GHSA-PJ96-XH2W-FGQX

Affected Products

Alt Linux
Moodle
Red Os