Total vulnerabilities in the database
Insufficient validation of profile field availability condition resulted in an SQL injection risk (by default only available to teachers and managers).
Software | From | Fixed in |
---|---|---|
moodle / moodle | 4.0.0 | 4.0.0.x |
moodle / moodle | 3.9.0 | 3.9.0.x |
moodle / moodle | 4.1.0 | 4.1.0.x |
moodle / moodle | 3.11.0 | 3.11.0.x |
moodle / moodle | 4.0.0.x | 4.0.7 |
moodle / moodle | 4.1.1 | 4.1.1.x |
moodle / moodle | 3.9.0.x | 3.9.20 |
moodle / moodle | 3.11.0.x | 3.11.13 |
![]() |
4.1.0 | 4.1.2 |
![]() |
4.0.0 | 4.0.7 |
![]() |
3.11.0 | 3.11.13 |
![]() |
- | 3.9.20 |