CVE-2021-36395

HIGH

Moodle - DoS

Title source: llm
STIX 2.1

Description

In Moodle, the file repository's URL parsing required additional recursion handling to mitigate the risk of recursion denial of service.

Scores

CVSS v3 7.5
EPSS 0.0055
EPSS Percentile 68.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-674 CWE-400
Status published
Products (2)
moodle/moodle < 3.9.8
moodle/moodle 3.11.0-beta - 3.11.1Packagist
Published Mar 06, 2023
Tracked Since Feb 18, 2026