CVE-2025-60511 | OpenAI Chat Block Plugin 3.0.1 on Moodle completion.php blockId authorization
A vulnerability categorized as critical has been discovered in OpenAI Chat Block Plugin 3.0.1 on Moodle. This issue affects some unknown processing of the file /blocks/openai_chat/api/completion.php. The manipulation of the argument blockId results in authorization bypass.
This vulnerability is known as CVE-2025-60511. It is possible to launch the attack remotely. No exploit is available.