CVE-2026-102577 | Moodle up to 4.5.12/5.0.8/5.1.5/5.2.1 URL downloader server-side request forgery

SecurityVulns

A vulnerability classified as problematic was found in Moodle up to 4.5.12/5.0.8/5.1.5/5.2.1. Affected by this vulnerability is an unknown functionality of the component URL downloader. Such manipulation leads to server-side request forgery.

This vulnerability is referenced as CVE-2026-102577. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More