A flaw was found in Moodle. The analysis request action in the Brickfield tool did not include the necessary token to prevent a Cross-site request forgery (CSRF) risk.
{
"cwe_ids": [
"CWE-352"
],
"github_reviewed": true,
"github_reviewed_at": "2025-04-25T17:07:24Z",
"nvd_published_at": "2025-04-25T15:15:37Z",
"severity": "LOW"
}