A vulnerability was found in Moodle. Users with access to delete audiences from reports could delete audiences from other reports that they do not have permission to delete from.
{
"severity": "Medium",
"cpes": [
"cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*"
]
}