CVE-2020-25627

The moodlenetprofile user profile field required extra sanitizing to prevent a stored XSS risk. This affects versions 3.9 to 3.9.1. Fixed in 3.9.2.
References
Link Resource
https://moodle.org/mod/forum/discuss.php?d=410839 Patch Vendor Advisory
Configurations

Configuration 1

cpe:2.3:a:moodle:moodle:*:*:*:*:*:*:*:*

Information

Published : 2020-12-09 01:15

Updated : 2020-12-10 07:41


NVD link : CVE-2020-25627

Mitre link : CVE-2020-25627

Products Affected
No products.
CWE