Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27935
HistoryNov 20, 2020 - 5:47 a.m.

Cross-Site Scripting (XSS)

2020-11-2005:47:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
cross-site scripting
xss
moodle
content bank
javascript
vulnerability
browser

EPSS

0.001

Percentile

46.9%

moodle/moodle is vulnerable to cross-site scripting (XSS). An attacker is able to inject and execute arbitrary Javascript in a user’s browser by storing malicious code when renaming content bank items, which would render when a victim views the bank items.

EPSS

0.001

Percentile

46.9%