[Git][security-tracker-team/security-tracker][master] Add new moodle issues
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Tue Nov 12 10:14:42 GMT 2024
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4e6e5c2a by Salvatore Bonaccorso at 2024-11-12T11:14:24+01:00
Add new moodle issues
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -136,21 +136,21 @@ CVE-2024-45087 (IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to cr
CVE-2024-44546 (Powerjob >= 3.20 is vulnerable to SQL injection via the version parame ...)
TODO: check
CVE-2024-43439 (A flaw was found in moodle. H5P error messages require additional sani ...)
- TODO: check
+ - moodle <removed>
CVE-2024-43437 (A flaw was found in moodle. Insufficient sanitizing of data when perfo ...)
- TODO: check
+ - moodle <removed>
CVE-2024-43435 (A flaw was found in moodle. Insufficient capability checks make it pos ...)
- TODO: check
+ - moodle <removed>
CVE-2024-43433 (A flaw was found in moodle. Matrix room membership and power levels ar ...)
- TODO: check
+ - moodle <removed>
CVE-2024-43432 (A flaw was found in moodle. The cURL wrapper in Moodle strips HTTPAUTH ...)
- TODO: check
+ - moodle <removed>
CVE-2024-43430 (A flaw was found in moodle. External API access to Quiz can override c ...)
- TODO: check
+ - moodle <removed>
CVE-2024-43429 (A flaw was found in moodle. Some hidden user profile fields are visibl ...)
- TODO: check
+ - moodle <removed>
CVE-2024-43427 (A flaw was found in moodle. When creating an export of site administra ...)
- TODO: check
+ - moodle <removed>
CVE-2024-42372 (Due to missing authorization check in SAP NetWeaver AS Java (System La ...)
NOT-FOR-US: SAP
CVE-2024-39605 (If an attacker tricks a valid user into running Delta Electronics DIAS ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4e6e5c2ada1981bc396e2a3069429a2f1c547d92
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/4e6e5c2ada1981bc396e2a3069429a2f1c547d92
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241112/85fb9632/attachment.htm>
More information about the debian-security-tracker-commits
mailing list