BIT-moodle-2026-102583

See a problem?
Import Source
https://github.com/bitnami/vulndb/tree/main/data/moodle/BIT-moodle-2026-102583.json
JSON Data
https://api.test.osv.dev/v1/vulns/BIT-moodle-2026-102583
Aliases
Published
2026-10-05T11:55:28Z
Modified
2026-10-05T14:30:03Z
Summary
Moodle: incorrect capability check in ai generate image web service
Details

A flaw was found in Moodle. An incorrect capability check in the artificial intelligence (AI) editor placement's image generation web service allows an authenticated user to invoke the feature without holding the required capability. This flaw permits unauthorized users to access and utilize the AI image generation functionality.

Database specific
{
    "cpes":  [
        "cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*"
    ],
    "severity":  "Low"
}
References

Affected packages

Bitnami / moodle

Package

Name
moodle
Purl
pkg:bitnami/moodle

Severity

  • 2.7 (Low) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N CVSS Calculator

Affected ranges

Type
SEMVER
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
4.5.13
Introduced
5.0.0
Fixed
5.0.9
Introduced
5.1.0
Fixed
5.1.6
Introduced
5.2.0
Fixed
5.2.2

Database specific

source
"https://github.com/bitnami/vulndb/tree/main/data/moodle/BIT-moodle-2026-102583.json"