-
CVSS Score
-| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| moodle/moodle | composer | >= 2.4.0, < 2.4.4 | 2.4.4 |
| moodle/moodle | composer | < 2.3.7 | 2.3.7 |
The vulnerability stems from incorrect handling of hidden grade visibility in multi-course contexts. The commit diff shows: