CVE-2021-36403, GHSA-j9cw-5cpj-9qj5
packagist/moodle/moodle
Moodle has a Hidden Functionality vulnerability
In Moodle, in some circumstances, email notifications of messages could have the link back to the original message hidden by HTML, which may pose a phishing risk.
All versions before 3.9.8, all versions starting from 3.10.0 before 3.10.5, all versions starting from 3.11.0-beta before 3.11.1
Upgrade to versions 3.9.8, 3.10.5, 3.11.1 or above.
2023-03-08
source |