Mahara Community - Security Announcements - Security issue relating to Access control and session cookies <15.04.15, <16.04.9, <16.10.6, <17.04.4 - All postshttps://mahara.org/,t,8082https://mahara.org/theme/mahara-org/images/site-logo.svghttps://mahara.org/favicon.ico
Mahara
2017-10-30T14:34:06+13:00Security issue relating to Access control and session cookies <15.04.15, <16.04.9, <16.10.6, <17.04.4https://mahara.org/,8082,32443Old session cookies can be used to access an account under certain conditions.
Mahara 15.04 before 15.04.15 and 16.04 before 16.04.9 and 16.10 before 16.10.6 and 17.04 before 17.04.4 are vulnerable to a user account being accessed with old session cookies if they closed browser rather than logging out.