Lucene search

K
osvGoogleOSV:GHSA-PJ45-HP8H-289R
HistoryMay 13, 2022 - 1:22 a.m.

Moodle Secure layout contained an insecure link in Boost theme

2022-05-1301:22:27
Google
osv.dev
6
moodle
secure layout
insecure link
boost theme
vulnerability
version 3.6.3
version 3.5.5
site home
navigation

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

22.7%

A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost theme’s secure layout, meaning students could navigate out of the page.

AI Score

6.5

Confidence

High

EPSS

0.001

Percentile

22.7%