Описание
Moodle Unsanitized HTML in site log for config_log_created
The site log report required additional encoding of event descriptions to ensure any HTML in the content is displayed in plaintext instead of being rendered.
Пакеты
Наименование
moodle/moodle
composer
Затронутые версииВерсия исправления
>= 4.3.0, < 4.3.4
4.3.4
Наименование
moodle/moodle
composer
Затронутые версииВерсия исправления
>= 4.2.0, < 4.2.7
4.2.7
Наименование
moodle/moodle
composer
Затронутые версииВерсия исправления
< 4.1.10
4.1.10
Связанные уязвимости
CVSS3: 4.3
ubuntu
около 1 года назад
The site log report required additional encoding of event descriptions to ensure any HTML in the content is displayed in plaintext instead of being rendered.
CVSS3: 4.3
nvd
около 1 года назад
The site log report required additional encoding of event descriptions to ensure any HTML in the content is displayed in plaintext instead of being rendered.
CVSS3: 4.3
debian
около 1 года назад
The site log report required additional encoding of event descriptions ...