Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2021-20186 - Vulnerability Database

Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2021-20186

Medium
Reference: CVE-2021-20186
Title: Moodle Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Overview:

It was found in Moodle before version 3.10.1 3.9.4 3.8.7 and 3.5.16 that if the TeX notation filter was enabled additional sanitizing of TeX content was required to prevent the risk of stored XSS.