Moodle Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2023-28334)
Description
Authenticated users were able to enumerate other users' names via the learning plans page.
Authenticated users were able to enumerate other users' names via the learning plans page.