Description
A flaw was found in Moodle. The return URL in the policy tool required additional sanitizing to prevent a reflected Cross-site scripting (XSS) risk.
Remediation
References
Related Vulnerabilities
WordPress Plugin User Activity Log Multiple Cross-Site Scripting Vulnerabilities (1.4.6)
WordPress Plugin Advanced Custom Fields (ACF) Security Bypass (5.9.9)
PHP Numeric Errors Vulnerability (CVE-2007-2872)
WordPress Ultimate Member Plugin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-10673)