Vulnerability CVE-2024-25983


Published: 2024-02-19

Description:
Insufficient checks in a web service made it possible to add comments to the comments block on another user's dashboard when it was not otherwise available (e.g., on their profile page).

 References:
http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-78300
https://bugzilla.redhat.com/show_bug.cgi?id=2264099
https://moodle.org/mod/forum/discuss.php?d=455641

Copyright 2026, cxsecurity.com

 

Back to Top