Description
Cross-site request forgery (CSRF) vulnerability in mod/assign/adminmanageplugins.php in Moodle through 2.6.11, 2.7.x before 2.7.13, 2.8.x before 2.8.11, 2.9.x before 2.9.5, and 3.0.x before 3.0.3 allows remote attackers to hijack the authentication of administrators for requests that manage Assignment plugins.
Remediation
References
Related Vulnerabilities
Drupal Core Cross-Site Scripting (8.0.0 - 9.2.21)
WordPress Plugin Project Supremacy V3 Lite Cross-Site Scripting (1.1)
Atlassian Jira CVE-2020-36237 Vulnerability (CVE-2020-36237)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2009-4297)
WordPress Plugin Encrypted Contact Form Multiple Vulnerabilities (1.0.4)