Moodle Server-Side Request Forgery (SSRF) Vulnerability - CVE-2021-36396 - Vulnerability Database

Moodle Server-Side Request Forgery (SSRF) Vulnerability - CVE-2021-36396

High
Reference: CVE-2021-36396
Title: Moodle Server-Side Request Forgery (SSRF) Vulnerability
Overview:

In Moodle insufficient redirect handling made it possible to blindly bypass cURL blocked hosts/allowed ports restrictions resulting in a blind SSRF risk.