Total vulnerabilities in the database
In Mahara 21.04 before 21.04.6, 21.10 before 21.10.4, and 22.04.2, files can sometimes be downloaded through thumb.php with no permission check.
Software | From | Fixed in |
---|---|---|
mahara / mahara | 22.04.2 | 22.04.2.x |
mahara / mahara | 21.10.0 | 21.10.4 |
mahara / mahara | 21.04.0 | 21.04.6 |