CVE-2016-2190: Insertion of Sensitive Information into Log File
(updated )
Moodle does not properly restrict links, which allows remote attackers to obtain sensitive URL information by reading a Referer log.
References
Detect and mitigate CVE-2016-2190 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →