Description
The moodlenetprofile user profile field required extra sanitizing to prevent a stored XSS risk. This affects versions 3.9 to 3.9.1. Fixed in 3.9.2.
Remediation
References
Related Vulnerabilities
MySQL CVE-2015-2567 Vulnerability (CVE-2015-2567)
WordPress Plugin Stock in & out SQL Injection (1.0.4)
Atlassian Confluence CVE-2023-22505 Vulnerability (CVE-2023-22505)
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-1468)
WordPress Plugin Integration for Contact Form 7 and ActiveCampaign Cross-Site Scripting (1.0.3)