Total vulnerabilities in the database
A flaw was found in moodle before versions 3.7.1, 3.6.5, 3.5.7. Users with permission to delete entries from a glossary were able to delete entries from other glossaries they did not have direct access to.
Software | From | Fixed in |
---|---|---|
moodle / moodle | 3.7.0 | 3.7.1 |
moodle / moodle | 3.6.0 | 3.6.5 |
moodle / moodle | - | 3.5.7 |