The CSV grade import method contained an XSS risk for users importing the spreadsheet, if it contained unsafe content.
| Software | From | Fixed in |
|---|---|---|
moodle / moodle
|
- | 4.3.0-rc2 |
moodle / moodle
|
4.2.0 | 4.2.3 |
moodle / moodle
|
4.1.0 | 4.1.6 |
moodle / moodle
|
4.0.0 | 4.0.11 |
moodle / moodle
|
3.11.0 | 3.11.17 |
moodle / moodle
|
3.9.0 | 3.9.24 |