Security Advisory

CVE-2021-21809

9.1
CRITICAL

Vulnerability Description

A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted series of HTTP requests can lead to command execution. An attacker must have administrator privileges to exploit this vulnerabilities.
Published Date June 23, 2021
Official Source NIST NVD Advisory