Description
Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.
Remediation
References
Related Vulnerabilities
Nginx Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2016-1247)
WordPress Plugin Gallery-Image and Video Gallery with Thumbnails SQL Injection (1.2.0)
MySQL CVE-2019-2685 Vulnerability (CVE-2019-2685)
Grafana Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-27962)