CVE-2021-20280
15.03.2021, 22:15
Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
| Vendor | Product | Version |
|---|---|---|
| moodle | moodle | 3.5.0 ≤ 𝑥 < 3.5.17 |
| moodle | moodle | 3.8.0 ≤ 𝑥 < 3.8.8 |
| moodle | moodle | 3.9.0 ≤ 𝑥 < 3.9.5 |
| moodle | moodle | 3.10.0 ≤ 𝑥 < 3.10.2 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References