Moodle Cross-Site Request Forgery (CSRF) Vulnerability - CVE-2021-43559
A flaw was found in Moodle in versions 3.11 to 3.11.3 3.10 to 3.10.7 3.9 to 3.9.10 and earlier unsupported versions. The quotdelete related badgequot functionality did not include the necessary token check to prevent a CSRF risk.