Medium severity4.3OSV Advisory· Published Oct 23, 2025· Updated Jun 17, 2026
CVE-2025-62393
CVE-2025-62393
Description
A flaw was found in the course overview output function where user access permissions were not fully enforced. This could allow unauthorized users to view information about courses they should not have access to, potentially exposing limited course details.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
moodle/moodlePackagist | >= 5.0.0-beta, < 5.0.3 | 5.0.3 |
Affected products
4- ghsa-coords2 versions
>= 5.0.0-beta, < 5.0.3+ 1 more
- (no CPE)range: >= 5.0.0-beta, < 5.0.3
- (no CPE)range: >= 5.0.0, < 5.0.3
Patches
Vulnerability mechanics
References
6- access.redhat.com/security/cve/CVE-2025-62393nvdThird Party AdvisoryWEB
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party AdvisoryWEB
- github.com/advisories/GHSA-rjcm-7v2p-9265ghsaADVISORY
- moodle.org/mod/forum/discuss.phpnvdIssue TrackingVendor AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2025-62393ghsaADVISORY
- github.com/moodle/moodle/commit/fc69b4744ba0132cc3093fd81940be15bc293835ghsaWEB
News mentions
0No linked articles in our index yet.