CVE-2023-5542

Moodle Improper Access Control vulnerability in packagist/moodle/moodle

Identifiers

CVE-2023-5542, GHSA-8mm2-m2gp-c6x2

Package Slug

packagist/moodle/moodle

Vulnerability

Moodle Improper Access Control vulnerability

Description

Students in "Only see own membership" groups could see other students in the group, which should be hidden.

Affected Versions

All versions before 4.3.0-rc2

Solution

Upgrade to version 4.3.0-rc2 or above. Note: 4.3.0-rc2 may be an unstable version. Use caution.

Last Modified

2023-11-10

source