CVE-2021-36396 Information

Description

In Moodle insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions resulting in a blind SSRF risk.

Reference

https://moodle.org/mod/forum/discuss.php?d=424802

Share on: