Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2020-1691 - Vulnerability Database
Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2020-1691
Medium
Reference:
CVE-2020-1691
Title:
Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:
In Moodle 3.8 messages required extra sanitizing before updating the conversation overview to prevent the risk of stored cross-site scripting.