All 148 CVE vulnerabilities found in Moodle, with AI-generated Chinese analysis, references, and POCs.
This page aggregates Common Weakness Enumeration (CWE) and Common Vulnerabilities and Exposures (CVE) data specifically related to the Moodle open-source learning management system. It serves as a centralized resource for tracking security flaws, vulnerability classifications, and associated risk metrics for this widely used educational platform. The collection includes diverse vulnerability types affecting Moodle’s core application, plugins, and integrations, encompassing issues such as cross-site scripting, SQL injection, authentication bypasses, and insecure direct object references. The data spans historical records from the platform’s inception through recent quarterly updates, ensuring comprehensive coverage of both legacy risks and emerging threats. This timeline allows users to observe patterns in vulnerability disclosure and remediation efforts over time. Visitors can utilize this aggregation to track vendor advisories issued by the Moodle Project and related security teams, gaining insight into how specific threats are identified and resolved. Users can also explore the prevalence and characteristics of particular weakness classes within the Moodle ecosystem to better understand the security posture of the software. Additionally, the page facilitates the lookup of a specific product’s vulnerability history, enabling developers, system administrators, and security analysts to review past incidents, assess ongoing risks, and prioritize patching strategies. By consolidating this information, the resource supports informed decision-making regarding software maintenance, security audits, and compliance reporting for institutions deploying Moodle solutions.
Vendor: Moodle
All 148 known CVE vulnerabilities affecting Moodle with full Chinese analysis, references, and POCs where available.