Description
In Moodle 3.2.2+, there is XSS in the Course summary filter of the "Add a new course" page, as demonstrated by a crafted attribute of an SVG element.
Remediation
References
Related Vulnerabilities
WordPress Plugin Easy Testimonials Cross-Site Request Forgery (3.6.1)
WordPress Plugin MouseWheel Smooth Scroll Cross-Site Request Forgery (5.6)
WordPress Plugin The Events Calendar:Eventbrite Tickets Cross-Site Scripting (3.9.6)
MySQL CVE-2021-35640 Vulnerability (CVE-2021-35640)
Internet Information Services Other Vulnerability (CVE-2000-0226)