Moodle Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2021-36400)
Description
In Moodle, insufficient capability checks made it possible to remove other users' calendar URL subscriptions.
In Moodle, insufficient capability checks made it possible to remove other users' calendar URL subscriptions.