Hi Moritz, hi Joost On Sat, Jan 14, 2017 at 04:51:53PM +0100, Moritz Muehlenhoff wrote: > Package: moodle > Severity: important > Tags: security > > Hi, > please see > https://packetstormsecurity.com/files/139466/Moodle-CMS-3.1.2-Cross-Site-Scripting-File-Upload.html
JFTR, regarding this one: I tried some weeks ago to contact Marina Glancy to get more information abouth those CVEs from upstream point of view, but got not reply unfortunately. Cc'ing for this bug as well. Regards, Salvatore