In Mahara 21.04 before 21.04.7, 21.10 before 21.10.5, 22.04 before 22.04.3, and 22.10 before 22.10.0, embedded images are accessible without a sufficient permission check under certain conditions.
2022-11-06T17:15:10.053
2025-05-02T19:15:54.213
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mahara | mahara | < 21.04.7 | Yes |
Application | mahara | mahara | < 21.10.5 | Yes |
Application | mahara | mahara | < 22.04.3 | Yes |
Application | mahara | mahara | 22.10.0 | Yes |