The site log report required additional encoding of event descriptions to ensure any HTML in the content is displayed in plaintext instead of being rendered.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-vvh5-7v3m-j3mj | Moodle Unsanitized HTML in site log for config_log_created |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://moodle.org/mod/forum/discuss.php?d=458395 |
|
History
Fri, 30 May 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Moodle
Moodle moodle |
|
| CPEs | cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Moodle
Moodle moodle |
Status: PUBLISHED
Assigner: fedora
Published:
Updated: 2024-08-02T02:42:59.940Z
Reserved: 2024-04-29T13:02:30.267Z
Link: CVE-2024-34006
Updated: 2024-08-02T02:42:59.940Z
Status : Analyzed
Published: 2024-05-31T21:15:09.533
Modified: 2025-05-30T16:48:15.447
Link: CVE-2024-34006
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA