Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-26529 PoC — Moodle 安全漏洞

Source
Associated Vulnerability
Title:Moodle 安全漏洞 (CVE-2025-26529)
Description:Moodle是Moodle开源的一套免费的电子学习软件平台,也称课程管理系统、学习管理系统或虚拟学习环境。 Moodle存在安全漏洞,该漏洞源于描述信息没有进行额外清理,导致跨站脚本攻击。
Description
Environment used to find Moodle CVE-2025-26529
Readme
# Moodle Docker Setup

This project provides a quick and easy way to set up and debug a Moodle environment using Docker and Docker Compose. 

## Version

- **Moodle Version**: 4.4.5

## Vulnerability Information

Please note that this setup is **vulnerable to CVE-2025-26529**.

## Prerequisites

Before you begin, ensure you have the following installed on your system:

- [Docker](https://docs.docker.com/get-docker/)
- [Docker Compose](https://docs.docker.com/compose/install/)
- [Visual Studio Code (VS Code)](https://code.visualstudio.com/) (Recommended for development)

## Getting Started

Follow these steps to get your Moodle environment up and running:

### 1. Clone the repository

Clone this repository to your local machine:

```bash
git clone <repository-url>
```


### Download the moodle source code 
```bash
wget https://github.com/moodle/moodle/archive/refs/tags/v4.4.5.zip
unzip v4.4.5.zip 
mv moodle-4.4.5 src
```

```bash
docker-compose up -d
```
```bash
chmod 777 moodledata
```
# moodleTestingEnv
File Snapshot

[4.0K] /data/pocs/aba82990917b24131810d428e60385df3c9d9129 ├── [ 22] custom.ini ├── [ 729] docker-compose.yml ├── [ 713] Dockerfile ├── [4.0K] exploit │   ├── [ 9] exploit.js │   └── [3.1K] exploit.py ├── [1020] README.md └── [ 219] xdebug.ini 1 directory, 7 files
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.