Comment 0 for bug 958841

Revision history for this message
Melissa Draper (melissa) wrote :

Here are patches to fix a minor security issue in lucid, maverick, natty and oneiric versions of Mahara

The issue affects both 1.2.x and 1.4.x

 * Fix default config for sites with multiple SAML instances
   - Default configuration changed to prevent impersonation
   - https://mahara.org/interaction/forum/topic.php?id=4367