Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-8fcv-4qp9-pg32 | Moodle sends quiz-related messages to inactive/suspended users |
Fri, 14 Nov 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* |
Fri, 24 Oct 2025 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Moodle
Moodle moodle |
|
| Vendors & Products |
Moodle
Moodle moodle |
Thu, 23 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Oct 2025 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Moodle failed to verify enrolment status correctly when sending quiz notifications. As a result, suspended or inactive users might receive quiz-related messages, leaking limited course information. | |
| Title | Moodle: quiz notifications sent to suspended participants | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2025-10-23T14:14:11.201Z
Reserved: 2025-10-13T10:12:30.925Z
Link: CVE-2025-62394
Updated: 2025-10-23T14:14:08.215Z
Status : Analyzed
Published: 2025-10-23T12:15:31.583
Modified: 2025-11-14T19:40:17.290
Link: CVE-2025-62394
No data.
OpenCVE Enrichment
Updated: 2025-10-24T10:16:56Z
Github GHSA