Headline
CVE-2021-36402
In Moodle, Users’ names required additional sanitizing in the account confirmation email, to prevent a self-registration phishing risk.
Related news
GHSA-gv8f-43pg-c5qw: Moodle Improper Input Validation vulnerability
In affected versions of Moodle, users' names require additional sanitizing in the account confirmation email, to prevent a self-registration phishing risk. This issue has been patched in versions 3.9.8, 3.10.5 and 3.11.1.