๐Ÿ” CVE Alert

CVE-2024-48899

MEDIUM 4.3

Moodle: idor when accessing list of course badges

CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability was found in Moodle. Additional checks are required to ensure users can only fetch the list of course badges for courses that they are intended to have access to.

CWE CWE-284
Published Nov 20, 2024
Last Updated Nov 20, 2024
Stay Ahead of the Next One

Get instant alerts for

Be the first to know when new medium vulnerabilities are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2318819