In Moodle, Users' names required additional sanitizing in the account confirmation email, to prevent a self-registration phishing risk.
2023-03-06T23:15:10.473
2025-03-07T18:15:35.320
Modified
CVSSv3.1: 5.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | moodle | moodle | < 3.9.8 | Yes |
Application | moodle | moodle | < 3.10.5 | Yes |
Application | moodle | moodle | < 3.11.1 | Yes |