CVE-2026-54733
Last modified
CVE-2026-54733 is a critical-severity vulnerability rated 9.3/10 on the CVSS scale. The Microsoft 365 and Microsoft Entra ID Plugins for Moodle provide Office 365 and Azure Active Directory integration for Moodle. Prior to 4.5.6, 5.0.5, and 5.1.1, the Microsoft Office 365 Integration plugin local_o365 Teams SSO endpoint sso_login.php base64-decodes a JWT payload and authenticates users from the upn claim without verifying the JWT signature, allowing an unauthenticated attacker to forge a token and obtain a Moodle session as an O365-authenticated user.
Description
The Microsoft 365 and Microsoft Entra ID Plugins for Moodle provide Office 365 and Azure Active Directory integration for Moodle. Prior to 4.5.6, 5.0.5, and 5.1.1, the Microsoft Office 365 Integration plugin local_o365 Teams SSO endpoint sso_login.php base64-decodes a JWT payload and authenticates users from the upn claim without verifying the JWT signature, allowing an unauthenticated attacker to forge a token and obtain a Moodle session as an O365-authenticated user. This issue is fixed in versions 4.5.6, 5.0.5, and 5.1.1.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| microsoft | o365-moodle | < 4.5.6; >= 5.0.0, < 5.0.5; >= 5.1.0, < 5.1.1 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-54733?
How severe is CVE-2026-54733?
How do I fix CVE-2026-54733?
How Strix Helps
- Same Subject, Wrong User: A Cross-Issuer Account Takeover in n8nStrix found an identity-binding bug in n8n's token-exchange flow enabling account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-54727proot-distro is a utility for managing proot containers. Pri…8.2
- CVE-2026-54728bunkerweb is an Open-source and next-generation Web Applicat…6.1
- CVE-2026-54729DSSRF is a Node.js library that provides a wide range of uti…8.7
- CVE-2026-5473A vulnerability has been found in NASA cFS up to 7.0.0. The …7
- CVE-2026-54730authentik is an open-source identity provider. Prior to 2026…8.6
- CVE-2026-54732libreoffice-convert is a Node.js module for converting offic…6.5
- CVE-2026-54734Prebid Server Java is the Java version of Prebid Server. Pri…10
- CVE-2026-54735Prebid Server is an open-source solution for running real-ti…10
- CVE-2026-54736Phalcon is a high-performance, full-stack PHP framework. Pri…8.2
- CVE-2026-54737@phun-ky/defaults-deep is a library like lodash defaultsDeep…7.3
- CVE-2026-54738Lemmy is a link aggregator and forum for the fediverse. Prio…6.5
- CVE-2026-54739Lemmy is a link aggregator and forum for the fediverse. Prio…6.9
Are you affected by CVE-2026-54733?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
