In Moodle before 3.9.1, 3.8.4, 3.7.7 and 3.5.13, yui_combo needed to limit the amount of files it can load to help mitigate the risk of denial of service.
2022-08-16T21:15:09.493
2024-11-21T05:03:00.390
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | moodle | moodle | < 3.5.13 | Yes |
Application | moodle | moodle | < 3.7.7 | Yes |
Application | moodle | moodle | < 3.8.4 | Yes |
Application | moodle | moodle | 3.9.0 | Yes |