VYPR
Medium severity4.3NVD Advisory· Published Sep 30, 2026

CVE-2026-102584

CVE-2026-102584

Description

A flaw was found in Moodle. Due to a missing capability check, a low-privileged authenticated user can trigger the recalculation of grade penalties without holding the required permissions. This issue allows unauthorized users to modify grade penalty records, potentially altering student assessment scores.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Moodle/Moodleinferred2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.