Untriaged
Moodle: auto-populated h5p author name causes a potential information leak
H5P metadata automatically populated the author with the user's username, which could be sensitive information.
Affected products
h5p
- ==4.2
- ==3.9
- ==4.1
- ==3.11
- ==4.0
moodle
- <3.11.17
- <4.0.11
- <4.1.6
- <4.2.3
- <3.9.24
Package maintainers
-
@freezeboy freezeboy
-
@kmein Kierán Meinhardt <kmein@posteo.de>