Vulnerability CVE-2023-28329


Published: 2023-03-23

Description:
Insufficient validation of profile field availability condition resulted in an SQL injection risk (by default only available to teachers and managers).

 References:
https://moodle.org/mod/forum/discuss.php?d=445061

Copyright 2026, cxsecurity.com

 

Back to Top