Description
The CSV grade import method contained an XSS risk for users importing the spreadsheet, if it contained unsafe content.
Remediation
References
Related Vulnerabilities
WordPress Plugin Uploader 'num' Parameter Cross-Site Scripting (1.0.0)
WebLogic CVE-2017-10352 Vulnerability (CVE-2017-10352)
Joomla Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-3226)
Oracle Database Server CVE-2008-0344 Vulnerability (CVE-2008-0344)
Joomla Incorrect Authorization Vulnerability (CVE-2020-11889)