{"id":"CVE-2025-67851","aliases":["BIT-moodle-2025-67851","GHSA-qfh6-h7j6-fvjv"],"url":"https://o3.security/vulnerability/CVE-2025-67851","summary":"Moodle: moodle: formula injection allows arbitrary formula execution via unescaped data export","details":"A flaw was found in moodle. This formula injection vulnerability occurs when data fields are exported without proper escaping. A remote attacker could exploit this by providing malicious data that, when exported and opened in a spreadsheet, allows arbitrary formulas to execute. This can lead to compromised data integrity and unintended operations within the spreadsheet.","published":"2026-02-03T10:52:06.974Z","modified":"2026-08-12T03:51:44.308592335Z","cvss":{"score":6.1,"severity":"MEDIUM","vector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:L"},"epss":{"score":0.00261,"percentile":0.18098,"asOf":"2026-09-17"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"4.1.22"},{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"4.4.12"},{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"4.5.8"},{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"5.0.4"},{"ecosystem":"Packagist","name":"moodle/moodle","fixedVersion":"5.1.1"}],"fix":{"url":"https://github.com/moodle/moodle/commit/29820c5ff4ef381c7a743091ec5c68ac82903b22","label":"moodle/moodle@29820c5"},"references":[{"type":"WEB","url":"https://github.com/moodle/moodle/"},{"type":"WEB","url":"https://moodle.org/mod/forum/discuss.php?d=471301"},{"type":"ADVISORY","url":"https://access.redhat.com/security/cve/CVE-2025-67851"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/67xxx/CVE-2025-67851.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-67851"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2423841"},{"type":"WEB","url":"https://github.com/moodle/moodle/commit/29820c5ff4ef381c7a743091ec5c68ac82903b22"},{"type":"WEB","url":"https://github.com/moodle/moodle/commit/aa66bacd0783cbc33528fba9c2adca1f685a59bd"},{"type":"WEB","url":"https://github.com/moodle/moodle/commit/dc57ccc491a2a04032445a3ee92fd0d335ebd746"},{"type":"PACKAGE","url":"https://github.com/moodle/moodle"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:44.308592335Z"}}