CVE-2022-40316 Information

Description

The H5P activity attempts report did not filter by groups which in separate groups mode could reveal information to non-editing teachers about attempts/users in groups they should not have access to.

Reference

https://moodle.org/mod/forum/discuss.php?d=438395 https://bugzilla.redhat.com/show_bug.cgi?id=2128151

Share on: