CVE

Id
93858  
CVE No.
CVE-2016-7038  
Status
Candidate  
Description
In Moodle 2.x and 3.x, web service tokens are not invalidated when the user password is changed or forced to be changed.  
Phase
Assigned (20160823)  
Votes
None (candidate not yet proposed)  
Comments