CVE-2025-62393

A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.
References
Link Resource
https://access.redhat.com/security/cve/CVE-2025-62393 Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2404426 Issue Tracking Third Party Advisory
https://moodle.org/mod/forum/discuss.php?d=470381 Issue Tracking Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*

History

14 Nov 2025, 19:39

Type Values Removed Values Added
References () https://access.redhat.com/security/cve/CVE-2025-62393 - () https://access.redhat.com/security/cve/CVE-2025-62393 - Third Party Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=2404426 - () https://bugzilla.redhat.com/show_bug.cgi?id=2404426 - Issue Tracking, Third Party Advisory
References () https://moodle.org/mod/forum/discuss.php?d=470381 - () https://moodle.org/mod/forum/discuss.php?d=470381 - Issue Tracking, Vendor Advisory
CPE cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*
First Time Moodle
Moodle moodle

23 Oct 2025, 13:15

Type Values Removed Values Added
References
  • () https://moodle.org/mod/forum/discuss.php?d=470381 -

23 Oct 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-23 12:15

Updated : 2025-11-14 19:39


NVD link : CVE-2025-62393

Mitre link : CVE-2025-62393

CVE.ORG link : CVE-2025-62393


JSON object : View

Products Affected

moodle

  • moodle
CWE
CWE-284

Improper Access Control