An issue in the logic used to check 0.0.0.0 against the cURL blocked hosts lists resulted in an SSRF risk. This flaw affects Moodle versions 4.2, 4.1 to 4.1.3, 4.0 to 4.0.8, 3.11 to 3.11.14, 3.9 to 3.9.21 and earlier unsupported versions.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: fedora

Published: 2023-06-22T00:00:00

Updated: 2024-08-02T16:23:59.213Z

Reserved: 2023-06-13T00:00:00

Link: CVE-2023-35133

cve-icon Vulnrichment

Updated: 2024-08-02T16:23:59.213Z

cve-icon NVD

Status : Modified

Published: 2023-06-22T21:15:09.520

Modified: 2024-11-21T08:08:00.163

Link: CVE-2023-35133

cve-icon Redhat

No data.