Headline
GHSA-786g-xv8v-9h93: Moodle Cross-site Scripting vulnerability
In Moodle, ID numbers displayed in the web service token list required additional sanitizing to prevent a stored XSS risk.
Moodle Cross-site Scripting vulnerability
Moderate severity GitHub Reviewed Published Mar 7, 2023 to the GitHub Advisory Database • Updated Mar 8, 2023
Related news
CVE-2021-36398
In moodle, ID numbers displayed in the web service token list required additional sanitizing to prevent a stored XSS risk.