Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:generic/kimageformats

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

0

CVE-2026-102588 is a medium severity vulnerability in Moodle's XML grade import feature. The flaw is due to missing Cross-Site Request Forgery (CSRF) token validation, allowing an attacker to trick an authenticated user with grade management permissions into performing unauthorized grade modifications. This can lead to unauthorized setting or overwriting of student grades remotely.

Join the discussion
0

CVE-2026-102587 is a low-severity vulnerability in Moodle where user list filters do not properly enforce visibility restrictions on user profile fields. This allows authorized users with manager privileges to filter user lists by profile attributes they are not allowed to view directly, potentially disclosing hidden user information through inference.

Join the discussion

CVE-2026-102586 is a cross-site scripting (XSS) vulnerability in Moodle caused by insufficient sanitization of username input on the password reset page. This flaw allows a remote attacker to craft a malicious password reset link that, when accessed by an unauthenticated user, can execute arbitrary scripts in the victim's browser. The vulnerability has a medium severity rating with a CVSS score of 4.3.

Join the discussion
0

CVE-2026-102585 is a medium severity vulnerability in Moodle where an authenticated user with teacher privileges can enroll users into groups that do not belong to the course they are managing. This occurs because the application does not verify group ownership during enrollment. The flaw allows unauthorized group assignments but does not impact confidentiality or availability.

Join the discussion
0

CVE-2026-102584 is a vulnerability in Moodle where a missing capability check allows a low-privileged authenticated user to trigger recalculation of grade penalties without proper permissions. This can lead to unauthorized modification of grade penalty records and potentially alter student assessment scores. The vulnerability has a medium severity with a CVSS score of 4.3.

Join the discussion
0

CVE-2026-102583 is a vulnerability in Moodle involving an incorrect capability check in the AI editor placement's image generation web service. This flaw allows authenticated users without the required permissions to access and use the AI image generation feature. The vulnerability has a low severity score and does not impact confidentiality or availability but may allow limited unauthorized functionality use.

Join the discussion
0

CVE-2026-102582 is a low-severity vulnerability in Moodle where the manual enrolment management page does not properly verify if the manual enrolment plugin is disabled. This allows users with enrolment permissions to access and manage manual enrolments directly via the URL, even if the feature is disabled in the user interface.

Join the discussion

CVE-2026-102581 is a stored cross-site scripting (XSS) vulnerability in Moodle caused by insufficient output escaping in templates displaying forum posts. This flaw allows an attacker to inject malicious scripts into forum posts, which execute in the browsers of users viewing those posts. The vulnerability has a medium severity rating with a CVSS score of 4.6.

Join the discussion

CVE-2026-102580 is a low-severity vulnerability in Moodle's Report Builder component where an authenticated attacker can supply an improperly validated class name, leading to arbitrary class instantiation. This unsafe reflection flaw allows unauthorized creation of internal program objects, potentially causing unexpected application behavior. The vulnerability requires high privileges and no user interaction. There is no explicit patch information provided in the available data.

Join the discussion

CVE-2026-102579 is a vulnerability in Moodle where an incorrect capability check in the grade web service allows authenticated students to access profile information of other students in the same course without proper authorization. This leads to unauthorized disclosure of private personal information. The issue has a medium severity with a CVSS score of 4.3. No specific affected versions or patch information is provided in the available data.

Join the discussion

Showing 1 to 10 of 140940 results

Filters:Package: pkg:generic/kimageformats
Page 1 of 14094
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses