Description
A vulnerability was found in Moodle 3.7 to 3.7.1, 3.6 to 3.6.5, 3.5 to 3.5.7 and earlier unsupported versions, where forum subscribe link contained an open redirect if forced subscription mode was enabled. If a forum's subscription mode was set to "forced subscription", the forum's subscribe link contained an open redirect.
Remediation
References
Related Vulnerabilities
OpenSSL Resource Management Errors Vulnerability (CVE-2011-4577)
WordPress Plugin Premmerce Product Filter for WooCommerce Security Bypass (3.1.2)
Oracle Database Server CVE-2007-5504 Vulnerability (CVE-2007-5504)
WordPress Plugin Divi Builder Arbitrary File Upload (4.5.2)
WordPress Plugin Leaflet Maps Marker Pro Multiple Vulnerabilities (1.5.7)