Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4271 | The question bank filter required additional sanitizing to prevent a reflected XSS risk. |
Github GHSA |
GHSA-4w32-c9g7-27qx | Moodle allows reflected XSS via question bank filter |
Mon, 11 Aug 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Moodle
Moodle moodle |
|
| CPEs | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Moodle
Moodle moodle |
Mon, 24 Feb 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Feb 2025 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The question bank filter required additional sanitizing to prevent a reflected XSS risk. | |
| Title | Reflected XSS via question bank filter | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2025-02-24T20:06:40.986Z
Reserved: 2025-02-12T13:29:39.336Z
Link: CVE-2025-26530
Updated: 2025-02-24T20:06:36.240Z
Status : Analyzed
Published: 2025-02-24T20:15:33.807
Modified: 2025-08-11T14:55:22.070
Link: CVE-2025-26530
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA