Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:47639
HistoryJun 19, 2024 - 8:43 a.m.

Information Disclosure

2024-06-1908:43:41
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4
moodle vulnerability
information disclosure
curl wrapper

6.6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.1%

moodle/moodle is vulnerable to Information Disclosure. The vulnerability is caused due to the cURL wrapper in Moodle failing to clear HTTP authorization headers when following redirects, potentially exposing sensitive authentication information to unintended hosts.

6.6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.1%