Detects Moodle installations running the Custom Certificate plugin (mdjnelson/moodle-mod_customcert) at versions prior to 4.4.9 or 5.0.3. The get_element_html and save_element web services fail to verify that the supplied element ID belongs to the authorized template, allowing any teacher to read and overwrite certificate elements from any other course via sequential ID enumeration.
Is your app exploitable through CVE-2026-30884?
Scan your domain free