CVE-2021-20280 PUBLISHED

Text-based feedback answers required additional sanitizing to prevent stored XSS and blind SSRF risks in moodle before 3.10.2, 3.9.5, 3.8.8, 3.5.17.

EPSS 0.88% · 75.2th percentile

Risk Scores

EPSS Score
0.88%
75.2th percentile

Affected Products

VendorProductVersions
Bitnamimoodle3.10.0, 3.5.0, 3.8.0
Bitnamimoodle3.5.0, 3.8.0, 3.9.0

Timeline

References

Open in Interactive Console →