Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2021-0721 | Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17. |
![]() |
GHSA-x2jp-hh65-4xvf | Cross-site scripting (XSS) and Server side request forgery (SSRF) in moodle |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-03T17:37:23.661Z
Reserved: 2020-12-17T00:00:00
Link: CVE-2021-20280

No data.

Status : Modified
Published: 2021-03-15T22:15:13.203
Modified: 2024-11-21T05:46:16.417
Link: CVE-2021-20280

No data.

No data.