Medium severity4.3NVD Advisory· Published Aug 5, 2022· Updated Jun 23, 2026
CVE-2020-1754
CVE-2020-1754
Description
In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.
Affected products
6Patches
Vulnerability mechanics
References
1- moodle.org/mod/forum/discuss.phpnvdIssue TrackingPatchVendor Advisory
News mentions
0No linked articles in our index yet.