Headline
GHSA-fm5h-58g2-4m3f: Moodle Improper Access Control vulnerability
Insufficient web service capability checks made it possible to move categories a user had permission to manage, to a parent category they did not have the capability to manage.
Moodle Improper Access Control vulnerability
Low severity GitHub Reviewed Published Nov 9, 2023 to the GitHub Advisory Database • Updated Nov 10, 2023
Related news
CVE-2023-5549: Official Moodle git projects - moodle.git/search
Insufficient web service capability checks made it possible to move categories a user had permission to manage, to a parent category they did not have the capability to manage.