VYPR
Medium severity4.3NVD Advisory· Published Jul 10, 2018· Updated Jun 17, 2026

CVE-2018-10890

CVE-2018-10890

Description

A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. It was possible for the core_course_get_categories web service to return hidden categories, which should be omitted when fetching course categories.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
moodle/moodlePackagist
>= 3.1, < 3.1.133.1.13
moodle/moodlePackagist
>= 3.3, < 3.3.73.3.7
moodle/moodlePackagist
>= 3.4, < 3.4.43.4.4
moodle/moodlePackagist
>= 3.5, < 3.5.13.5.1

Affected products

2

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.