← Back

CVE-2025-26525

nvd nist
Published: Feb 24, 2025Modified: Jun 17, 2026

JSON object

Loading...
8.6
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 4.0
Source: patrick@puiterwijk.org (Secondary)

Description

Insufficient sanitizing in the TeX notation filter resulted in an arbitrary file read risk on sites where pdfTeX is available (such as those with TeX Live installed).

Affected (4)

Products: Moodle: Moodle
1 product
Moodle
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Moodle
From 4.1.0 to 4.1.16
From 4.3.0 to 4.3.10
From 4.4.0 to 4.4.6
From 4.5.0 to 4.5.2

References (2)

Timeline

No history available yet.