Note:

If you want to create a new page for developers, you should create it on the Moodle Developer Resource site.

Moodle 3.5.14 release notes: Difference between revisions

From MoodleDocs
Line 11: Line 11:
* MDL-69068 - Allow behat generators to be pivoted
* MDL-69068 - Allow behat generators to be pivoted


==Security issues==
==Security fixes==
   
   
* [https://moodle.org/mod/forum/discuss.php?d=410840 MSA-20-0012] Reflected XSS in tag manager
* [https://moodle.org/mod/forum/discuss.php?d=410840 MSA-20-0012] Reflected XSS in tag manager

Revision as of 03:52, 7 May 2021

This version of Moodle is no longer supported for general bug fixes. You are encouraged to upgrade to a supported version of Moodle.

Releases > Moodle 3.5.14 release notes

Release date: 14 September 2020

Here is the full list of fixed issues in 3.5.14.

For developers

  • MDL-69068 - Allow behat generators to be pivoted

Security fixes

  • MSA-20-0012 Reflected XSS in tag manager
  • MSA-20-0013 "Log in as" capability in a course context may lead to some privilege escalation
  • MSA-20-0014 Denial of service risk in file picker unzip functionality

See also