Untriaged
Msa-24-0005: csrf risk in language import utility
The link to update all installed language packs did not include the necessary token to prevent a CSRF risk.
Affected products
4.2.6
- ==and 4.1.9
moodle
- ==4.3.3
- <4.2.6
- <4.1.9
- <4.3.3
Package maintainers
-
@freezeboy freezeboy
-
@kmein Kierán Meinhardt <kmein@posteo.de>