First published: Tue Sep 20 2022(Updated: )
Severity/Risk: Minor Versions affected: 4.0 to 4.0.3, 3.11 to 3.11.9, 3.9 to 3.9.16 and earlier unsupported versions Versions fixed: 4.0.4, 3.11.10 and 3.9.17 Reported by: Vincent CVE identifier: <a href="https://access.redhat.com/security/cve/CVE-2022-40315">CVE-2022-40315</a> Changes (master): <a href="http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-75283">http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-75283</a> Tracker issue: MDL-75283 Minor SQL injection risk in admin user browsing
Affected Software | Affected Version | How to fix |
---|---|---|
Moodle | >=3.9<3.9.16>=3.11<3.11.9>=4.0<4.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2128150 is categorized as minor.
Versions affected by REDHAT-BUG-2128150 include Moodle versions 4.0 to 4.0.3, 3.11 to 3.11.9, and 3.9 to 3.9.16, as well as earlier unsupported versions.
To fix REDHAT-BUG-2128150, upgrade Moodle to version 4.0.4, 3.11.10, or 3.9.17.
REDHAT-BUG-2128150 was reported by a contributor named Vincent.
REDHAT-BUG-2128150 is associated with the CVE identifier CVE-2022-40315.