Moodle contains a flaw that may lead to unauthorized disclosure of potentially sensitive information. The issue is triggered when a blog post that is hidden from guest users via the web interface is then included in the related RSS feed. This may allow a remote attacker to gain access to blog posts that were intended to be restricted..