-
CVSS Score
-The vulnerability stems from missing authorization checks during token validation for email attachments. Key indicators:
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| moodle/moodle | composer | >= 3.6, < 3.6.7 | 3.6.7 |
| moodle/moodle | composer | >= 3.7, < 3.7.3 | 3.7.3 |