Moodle – Open Redirect


During the scan, Kayran managed to find an Open Redirect vulnerability inside the Moodle platform.
Open Redirect rises whenever you have input which you then use, in order to redirect the user.
Open Redirection Vulnerability happens when a web application accepts an untrusted\unvalidated input. That could cause the web application to redirect the request to a URL contained within the untrusted input.

An attacker could write a new URL within the application that causes a redirect to malicious, external domains. This vulnerability can be used to perform successful phishing attacks and more.


Update to the latest version released by Moodle.

(link below)


