Alert GCSA-25025 - Aggiornamento di sicurezza per Moodle

****************************************************************** Alert ID: GCSA-25025 data: 18 febbraio 2025 titolo: Aggiornamento di sicurezza per Moodle ****************************************************************** :: Descrizione del problema Sono state rilasciate nuove versioni della piattaforma di e-learning Moodle con le quali vengono risolte 10 vulnerabilita' di sicurezza. MSA-25-0001: Arbitrary file read risk through pdfTeX MSA-25-0002: Feedback response viewing and deletions did not respect Separate Groups mode MSA-25-0003: Non-searchable tags can still be discovered on the tag search page and in the tags block MSA-25-0004: Stored XSS in ddimageortext question type MSA-25-0005: Stored XSS risk in admin live log MSA-25-0006: Reflected XSS via question bank filter MSA-25-0007: Upgrade RequireJS including security fix (upstream) MSA-25-0008: IDOR in badges allows disabling of arbitrary badges MSA-25-0009: Teachers can ev...