Description

A security vulnerability was found in Moodle where confidential information that prevents cross-site request forgery (CSRF) attacks was shared publicly through the site's URL. This vulnerability occurred specifically on two types of pages within the mod_data module: edit and delete pages.

INFO

Published Date :

2025-04-25T14:42:56.775Z

Last Modified :

2025-04-25T15:56:03.369Z

Source :

fedora
AFFECTED PRODUCTS

The following products are affected by CVE-2025-3637 vulnerability.

Vendors Products
Moodle
  • Moodle
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact