vulnerability

Moodle: Unspecified Security Vulnerability (CVE-2024-43434)

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:N)
Published
Nov 7, 2024
Added
May 5, 2025
Modified
May 6, 2025

Description

The bulk message sending feature in Moodle's Feedback module's non-respondents report had an incorrect CSRF token check, leading to a CSRF vulnerability.

Solution(s)

moodle-upgrade-4_1_12moodle-upgrade-4_2_9moodle-upgrade-4_3_6moodle-upgrade-4_4_2
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.