Description
The moodlenetprofile user profile field required extra sanitizing to prevent a stored XSS risk. This affects versions 3.9 to 3.9.1. Fixed in 3.9.2.
Remediation
References
Related Vulnerabilities
MySQL CVE-2020-14591 Vulnerability (CVE-2020-14591)
WordPress Plugin Foliopress WYSIWYG Cross-Site Scripting (2.6.8.4)
WordPress 4.0.x Multiple Vulnerabilities (4.0 - 4.0.36)
MySQL CVE-2019-2566 Vulnerability (CVE-2019-2566)
WordPress Plugin Event Calendar WD-Responsive Event Calendar Cross-Site Scripting (1.1.44)