CVE-2018-10891
10.07.2018, 18:29
A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. When a quiz question bank is imported, it was possible for the question preview that is displayed to execute JavaScript that is written into the question bank.Enginsight
Vendor | Product | Version |
---|---|---|
moodle | moodle | 3.1 ≤ 𝑥 < 3.1.13 |
moodle | moodle | 3.3 ≤ 𝑥 < 3.3.7 |
moodle | moodle | 3.4 ≤ 𝑥 < 3.4.4 |
moodle | moodle | 3.5 ≤ 𝑥 < 3.5.1 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References