VDB

CVE-2025-26525

CVE-2025-26525 PUBLISHED CVSS 8.600000381469727 HIGH

Insufficient sanitizing in the TeX notation filter resulted in an arbitrary file read risk on sites where pdfTeX is available (such as those with TeX Live installed).

EPSS 0.44% · 36.2th percentile

Risk Scores

CVSS 3.1
8.600000381469727
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
EPSS Score
0.44%
36.2th percentile

Affected Products

VendorProductVersions
Bitnamimoodle4.4.0, 4.1.0, 4.3.0
Bitnamimoodle4.1.0, 4.3.0, 4.4.0

Timeline

  • Feb 12, 2025 CVE ID Reserved
  • Feb 17, 2025 CVE Published
  • Feb 24, 2025 CVE Updated
  • Feb 24, 2025 PoC Published
  • Feb 24, 2025 PoC Published
  • Feb 27, 2025 EPSS Score
  • Mar 14, 2025 EPSS Score
  • Mar 16, 2025 Coalition ESS Score
  • Mar 28, 2025 EPSS Score
  • Apr 12, 2025 EPSS Score
  • Apr 26, 2025 EPSS Score
  • May 11, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›