Description
A vulnerability was found in moodle before versions 3.6.3 and 3.5.5. There was a link to site home within the the Boost theme's secure layout, meaning students could navigate out of the page.
Remediation
References
Related Vulnerabilities
WordPress Plugin UpdraftPlus WordPress Backup Privilege Escalation (1.23.2)
axios Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2023-45857)
WordPress 3.5.1 Multiple Vulnerabilities (2.0 - 3.5.1)
WordPress Plugin Simple PDF Viewer Cross-Site Scripting (1.9)
WordPress Plugin Advanced File Manager Directory Traversal (5.1)