You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: general/releases/4.1/4.1.21.md
+7-2Lines changed: 7 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -18,5 +18,10 @@ import { ReleaseNoteIntro } from '@site/src/components/ReleaseInformation';
18
18
<!-- cspell:enable -->
19
19
20
20
## Security fixes
21
-
22
-
A number of security related issues were resolved. Details of these issues will be released after a period of approximately one week to allow system administrators to safely update to the latest version.
21
+
<!-- cspell:disable -->
22
+
-[MSA-25-0042](https://moodle.org/mod/forum/discuss.php?d=470382) - Upgrade FPDI including security fix (upstream)
23
+
-[MSA-25-0044](https://moodle.org/mod/forum/discuss.php?d=470384) - External cohort search service method leaks system cohort data
24
+
-[MSA-25-0048](https://moodle.org/mod/forum/discuss.php?d=470388) - Password brute force risk when mobile/web services enabled
25
+
-[MSA-25-0049](https://moodle.org/mod/forum/discuss.php?d=470389) - Names of hidden groups are visible to users with access to create group calendar events
26
+
-[MSA-25-0050](https://moodle.org/mod/forum/discuss.php?d=470390) - Possible to bypass timer in timed assignments
Copy file name to clipboardExpand all lines: general/releases/4.4/4.4.11.md
+8-2Lines changed: 8 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -18,5 +18,11 @@ import { ReleaseNoteIntro } from '@site/src/components/ReleaseInformation';
18
18
<!-- cspell:enable -->
19
19
20
20
## Security fixes
21
-
22
-
A number of security related issues were resolved. Details of these issues will be released after a period of approximately one week to allow system administrators to safely update to the latest version.
21
+
<!-- cspell:disable -->
22
+
-[MSA-25-0042](https://moodle.org/mod/forum/discuss.php?d=470382) - Upgrade FPDI including security fix (upstream)
23
+
-[MSA-25-0044](https://moodle.org/mod/forum/discuss.php?d=470384) - External cohort search service method leaks system cohort data
24
+
-[MSA-25-0047](https://moodle.org/mod/forum/discuss.php?d=470387) - Possible to bypass MFA
25
+
-[MSA-25-0048](https://moodle.org/mod/forum/discuss.php?d=470388) - Password brute force risk when mobile/web services enabled
26
+
-[MSA-25-0049](https://moodle.org/mod/forum/discuss.php?d=470389) - Names of hidden groups are visible to users with access to create group calendar events
27
+
-[MSA-25-0050](https://moodle.org/mod/forum/discuss.php?d=470390) - Possible to bypass timer in timed assignments
Copy file name to clipboardExpand all lines: general/releases/4.5/4.5.7.md
+10-2Lines changed: 10 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -61,5 +61,13 @@ import { ReleaseNoteIntro } from '@site/src/components/ReleaseInformation';
61
61
<!-- cspell:enable -->
62
62
63
63
## Security fixes
64
-
65
-
A number of security related issues were resolved. Details of these issues will be released after a period of approximately one week to allow system administrators to safely update to the latest version.
64
+
<!-- cspell:disable -->
65
+
-[MSA-25-0042](https://moodle.org/mod/forum/discuss.php?d=470382) - Upgrade FPDI including security fix (upstream)
66
+
-[MSA-25-0043](https://moodle.org/mod/forum/discuss.php?d=470383) - Quiz notifications sent to suspended course participants
67
+
-[MSA-25-0044](https://moodle.org/mod/forum/discuss.php?d=470384) - External cohort search service method leaks system cohort data
68
+
-[MSA-25-0045](https://moodle.org/mod/forum/discuss.php?d=470385) - When using router (r.php) it was possible for the server to show application directories
69
+
-[MSA-25-0047](https://moodle.org/mod/forum/discuss.php?d=470387) - Possible to bypass MFA
70
+
-[MSA-25-0048](https://moodle.org/mod/forum/discuss.php?d=470388) - Password brute force risk when mobile/web services enabled
71
+
-[MSA-25-0049](https://moodle.org/mod/forum/discuss.php?d=470389) - Names of hidden groups are visible to users with access to create group calendar events
72
+
-[MSA-25-0050](https://moodle.org/mod/forum/discuss.php?d=470390) - Possible to bypass timer in timed assignments
Copy file name to clipboardExpand all lines: general/releases/5.0/5.0.3.md
+12-2Lines changed: 12 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -78,5 +78,15 @@ import { ReleaseNoteIntro } from '@site/src/components/ReleaseInformation';
78
78
<!-- cspell:enable -->
79
79
80
80
## Security fixes
81
-
82
-
A number of security related issues were resolved. Details of these issues will be released after a period of approximately one week to allow system administrators to safely update to the latest version.
81
+
<!-- cspell:disable -->
82
+
-[MSA-25-0041](https://moodle.org/mod/forum/discuss.php?d=470381) - Course access permissions are not properly checked in course_output_fragment_course_overview
83
+
-[MSA-25-0042](https://moodle.org/mod/forum/discuss.php?d=470382) - Upgrade FPDI including security fix (upstream)
84
+
-[MSA-25-0043](https://moodle.org/mod/forum/discuss.php?d=470383) - Quiz notifications sent to suspended course participants
85
+
-[MSA-25-0044](https://moodle.org/mod/forum/discuss.php?d=470384) - External cohort search service method leaks system cohort data
86
+
-[MSA-25-0045](https://moodle.org/mod/forum/discuss.php?d=470385) - When using router (r.php) it was possible for the server to show application directories
87
+
-[MSA-25-0046](https://moodle.org/mod/forum/discuss.php?d=470386) - Router produces JSON instead of 404 error when passed a non-existent course ID
88
+
-[MSA-25-0047](https://moodle.org/mod/forum/discuss.php?d=470387) - Possible to bypass MFA
89
+
-[MSA-25-0048](https://moodle.org/mod/forum/discuss.php?d=470388) - Password brute force risk when mobile/web services enabled
90
+
-[MSA-25-0049](https://moodle.org/mod/forum/discuss.php?d=470389) - Names of hidden groups are visible to users with access to create group calendar events
91
+
-[MSA-25-0050](https://moodle.org/mod/forum/discuss.php?d=470390) - Possible to bypass timer in timed assignments
0 commit comments