Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-vj5p-fp42-774p: Moodle may display roles to users who don't have access to them

The course participation report required additional checks to prevent roles being displayed which the user did not have access to view.

ghsa
#git

Moodle may display roles to users who don’t have access to them

Moderate severity GitHub Reviewed Published Mar 23, 2023 to the GitHub Advisory Database • Updated Mar 23, 2023

Related news

CVE-2023-1402

The course participation report required additional checks to prevent roles being displayed which the user did not have access to view.