VDB
CVE-2025-26533
CVE-2025-26533
PUBLISHED
An SQL injection risk was identified in the module list filter within course search.
EPSS 0.40% · 61.2th percentile
Risk Scores
EPSS Score
0.40%
61.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | moodle | 4.4.0, 4.1.0, 4.3.0 |
| Bitnami | moodle | 4.3.0, 4.4.0, 4.5.0 |
Exploit Intelligence
- CIRCL seen: CVE-2025-26533 (circl-sighting)
- CIRCL seen: CVE-2025-26533 (circl-sighting)
- CIRCL seen: CVE-2025-26533 (circl-sighting)
- https://moodle.org/mod/forum/discuss.php?d=466150 (circl)
- http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-84271 (circl)
Timeline
- Feb 17, 2025 CVE Published
- Feb 24, 2025 PoC Published
- Feb 24, 2025 PoC Published
- Feb 25, 2025 PoC Published
- Feb 27, 2025 EPSS Score
- Mar 13, 2025 EPSS Score
- Mar 25, 2025 Coalition ESS Score
- Mar 27, 2025 EPSS Score
- Apr 10, 2025 EPSS Score
- Apr 24, 2025 EPSS Score
- May 8, 2025 EPSS Score
- May 22, 2025 EPSS Score