Headline
GHSA-26fg-v32r-h663: Moodle Exposure of Sensitive Information to an Unauthorized Actor vulnerability
H5P metadata automatically populated the author with the user’s username, which could be sensitive information.
Moodle Exposure of Sensitive Information to an Unauthorized Actor vulnerability
Low severity GitHub Reviewed Published Nov 9, 2023 to the GitHub Advisory Database • Updated Nov 10, 2023
Related news
CVE-2023-5545: Official Moodle git projects - moodle.git/search
H5P metadata automatically populated the author with the user's username, which could be sensitive information.