A flaw was found in moodle. H5P error messages require additional sanitizing to prevent a reflected cross-site scripting (XSS) risk.
| Software | From | Fixed in |
|---|---|---|
moodle / moodle
|
- | 4.1.12 |
moodle / moodle
|
4.2.0 | 4.2.9 |
moodle / moodle
|
4.3.0 | 4.3.6 |
moodle / moodle
|
4.4.0 | 4.4.2 |