{"id":"CVE-2017-1000141","details":"An issue was discovered in Mahara before 18.10.0. It mishandled user requests that could discontinue a user's ability to maintain their own account (changing username, changing primary email address, deleting account). The correct behavior was to either prompt them for their password and/or send a warning to their primary email address.","modified":"2026-07-08T12:54:09.169613Z","published":"2018-01-30T19:29:00.213Z","references":[{"type":"REPORT","url":"https://bugs.launchpad.net/mahara/+bug/1422492"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/maharaproject/mahara","events":[{"introduced":"0"},{"fixed":"d427203cfda1e9f65598be9c86f41094619d31c5"}],"database_specific":{"cpe":"cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"fixed":"18.10.0"}],"source":"CPE_RANGE"}}],"versions":["18.10RC2_RELEASE","18.10RC1_RELEASE","18.10RC1_RELEASE_RELEASE","1.8RC2_RELEASE","1.8RC1_RELEASE","1.7RC1_RELEASE","1.4.0ALPHA1_RELEASE","1.3.0BETA2_RELEASE","1.3.0BETA1_RELEASE","1.2.0ALPHA3_RELEASE","1.2.0ALPHA2_RELEASE","1.1.0BETA4_RELEASE","1.1.0BETA2_RELEASE","1.1.0ALPHA3_RELEASE","1.1.0ALPHA2_RELEASE","1.1.0ALPHA1_RELEASE","1.0.0BETA2_RELEASE","1.0.0ALPHA2_RELEASE","1.0.0ALPHA1_RELEASE"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-1000141.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L"}]}