Description
In moodle, ID numbers displayed in the web service token list required additional sanitizing to prevent a stored XSS risk.
Remediation
References
Related Vulnerabilities
Jboss EAP Improper Input Validation Vulnerability (CVE-2011-4314)
Drupal Core 8.8.x Remote Code Execution (8.8.0 - 8.8.11)
MySQL CVE-2018-2576 Vulnerability (CVE-2018-2576)
MediaWiki Improper Input Validation Vulnerability (CVE-2013-6453)
Squid Improper Encoding or Escaping of Output Vulnerability (CVE-2021-31806)