Description
Multiple cross-site request forgery (CSRF) vulnerabilities in (1) editcategories.html and (2) editcategories.php in the Glossary module in Moodle through 2.5.9, 2.6.x before 2.6.7, 2.7.x before 2.7.4, and 2.8.x before 2.8.2 allow remote attackers to hijack the authentication of unspecified victims.
Remediation
References
Related Vulnerabilities
Dotclear Other Vulnerability (CVE-2005-3957)
WordPress Plugin Flog Server-Side Request Forgery (1.0beta3)
Oracle JRE CVE-2018-2677 Vulnerability (CVE-2018-2677)
WordPress Plugin Car Seller-Auto Classifieds Script SQL Injection (2.1.0)
WordPress Plugin Improved Sale Badges for WooCommerce Security Bypass (4.3.2)