Total vulnerabilities in the database
Insufficient escaping of participants' names in the participants page table resulted in a stored XSS risk when interacting with some features.
Software | From | Fixed in |
---|---|---|
![]() |
4.3.0 | 4.3.4 |
![]() |
4.2.0 | 4.2.7 |
![]() |
- | 4.1.10 |
moodle / moodle | - | 4.1.10 |
moodle / moodle | 4.2.0 | 4.2.7 |
moodle / moodle | 4.3.0 | 4.3.4 |