Description
Lack of output escaping leads to a XSS vector in the multilingual associations component.
Remediation
References
Related Vulnerabilities
Oracle HTTP Server CVE-2013-1862 Vulnerability (CVE-2013-1862)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-1423)
Jenkins Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-1000195)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-3181)