QID 997378
Date Published: 2024-02-22
QID 997378: PHP (Composer) Security Update for moodle/moodle (GHSA-jfrg-9hpq-9hvp)
Separate Groups mode restrictions were not honored when performing a forum export, which would export forum data for all groups. By default this only provided additional access to non-editing teachers.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-jfrg-9hpq-9hvp for updates and patch information.
Vendor References
- GHSA-jfrg-9hpq-9hvp -
github.com/advisories/GHSA-jfrg-9hpq-9hvp
CVEs related to QID 997378
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-jfrg-9hpq-9hvp | moodle/moodle |
|