EPSS
Percentile
39.2%
moodle/moodle is vulnerable to remote code execution. The vulnerability exists due to an insecure direct object reference, allowing an attacker to fetch other users’ calendar action events.
bugzilla.redhat.com/show_bug.cgi?id=2021519
github.com/moodle/moodle/commit/49c0337a9ae68045d881ad26ce6263ab553e38ce
moodle.org/mod/forum/discuss.php?d=429100