Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pj45-hp8h-289r

Опубликовано: 13 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 4.3

Описание

Moodle Secure layout contained an insecure link in Boost theme

A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost theme's secure layout, meaning students could navigate out of the page.

Пакеты

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

>= 3.5, < 3.5.5

3.5.5

Наименование

moodle/moodle

composer
Затронутые версииВерсия исправления

>= 3.6, < 3.6.3

3.6.3

EPSS

Процентиль: 47%
0.00241
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 6 лет назад

A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost theme's secure layout, meaning students could navigate out of the page.

CVSS3: 4.3
nvd
около 6 лет назад

A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost theme's secure layout, meaning students could navigate out of the page.

CVSS3: 4.3
debian
около 6 лет назад

A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. T ...

EPSS

Процентиль: 47%
0.00241
Низкий

4.3 Medium

CVSS3