CVE
- Id
- 93858
- CVE No.
- CVE-2016-7038
- Status
- Candidate
- Description
- In Moodle 2.x and 3.x, web service tokens are not invalidated when the user password is changed or forced to be changed.
- Phase
- Assigned (20160823)
- Votes
- None (candidate not yet proposed)
- Comments