Vulnerability Database

321,822

Total vulnerabilities in the database

CVE-2025-67851

A flaw was found in moodle. This formula injection vulnerability occurs when data fields are exported without proper escaping. A remote attacker could exploit this by providing malicious data that, when exported and opened in a spreadsheet, allows arbitrary formulas to execute. This can lead to compromised data integrity and unintended operations within the spreadsheet.

  • Published: Feb 3, 2026
  • Updated: Feb 4, 2026
  • CVE: CVE-2025-67851
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.1
  • AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:L