Описание
Moodle CSRF risk in analytics management of models
Actions in the admin management of analytics models did not include the necessary token to prevent a CSRF risk.
Пакеты
Наименование
moodle/moodle
composer
Затронутые версииВерсия исправления
>= 4.3.0, < 4.3.4
4.3.4
Наименование
moodle/moodle
composer
Затронутые версииВерсия исправления
>= 4.2.0, < 4.2.7
4.2.7
Наименование
moodle/moodle
composer
Затронутые версииВерсия исправления
< 4.1.10
4.1.10
Связанные уязвимости
CVSS3: 8.8
ubuntu
около 1 года назад
Actions in the admin management of analytics models did not include the necessary token to prevent a CSRF risk.
CVSS3: 8.8
nvd
около 1 года назад
Actions in the admin management of analytics models did not include the necessary token to prevent a CSRF risk.
CVSS3: 8.8
debian
около 1 года назад
Actions in the admin management of analytics models did not include th ...