CVE-2021-36396
06.03.2023, 21:15
In Moodle, insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions, resulting in a blind SSRF risk.
Vendor | Product | Version |
---|---|---|
moodle | moodle | 𝑥 < 3.9.8 |
moodle | moodle | 3.10.0 ≤ 𝑥 < 3.10.5 |
moodle | moodle | 3.11.0 ≤ 𝑥 < 3.11.1 |
𝑥
= Vulnerable software versions

Ubuntu Releases