CVE-2020-1754EPSS p46.5%
CVE-2020-1754CVE-2020-1754
moodle / moodle
Description
In Moodle before 3.8.2, 3.7.5, 3.6.9 and 3.5.11, users viewing the grade history report without the 'access all groups' capability were not restricted to viewing grades of users within their own groups.
Scoring
| CVSS | 4.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
| EPSS | 0.62% probability of exploitation · percentile 46.5% · 2026-08-08T12:02:54Z |
| Last modified | 2026-06-23 |