Description In Moodle, insufficient capability checks made it possible to remove other users' calendar URL subscriptions. Remediation References CVE-2021-36400 Related Vulnerabilities WordPress Plugin MailPoet-emails and newsletters in WordPress Cross-Site Scripting (3.23.1) MySQL CVE-2016-5612 Vulnerability (CVE-2016-5612) WordPress Plugin CrossSlide jQuery Multiple Vulnerabilities (2.0.5) WordPress Plugin Email Subscribers by Icegram Express-Email Marketing, Newsletters, Automation for WordPress & WooCommerce SQL Injection (5.7.20) Joomla! Core Denial of Service (2.5.0 - 3.9.27) Severity Medium Classification CVE-2021-36400 CWE-639 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N Tags Missing Update Known Vulnerabilities