A security vulnerability was discovered in Moodle that allows some users to access sensitive information about other students before they finish verifying their identities using two-factor authentication (2FA).
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| moodle/moodle(Packagist) | 4.3.0-beta | 4.3.12 | N/A |
| moodle/moodle(Packagist) | 4.4.0-beta | 4.4.8 | N/A |
| moodle/moodle(Packagist) | 4.5.0-beta | 4.5.4 | N/A |
CVSS Metrics