CVE-2019-14882 (NVD)

2020-03-18

A vulnerability was found in Moodle 3.7 to 3.7.3, 3.6 to 3.6.7, 3.5 to 3.5.9 and earlier where an open redirect existed in the Lesson edit page.

Products Moodle
Type URL Redirection to Untrusted Site ('Open Redirect') (CWE-601)
First patch - None (likely due to unavailable code)
Links https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14882
https://moodle.org/mod/forum/discuss.php?d=393585#p1586747