Description Moodle 3.5.x before 3.5.4 allows SSRF. Remediation References CVE-2019-6970 Related Vulnerabilities Atlassian Jira Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') Vulnerability (CVE-2020-14193) PHP Cryptographic Issues Vulnerability (CVE-2011-3189) WordPress Plugin LifterLMS-WP LMS for eLearning, Online Courses, & Quizzes Multiple Cross-Site Scripting Vulnerabilities (4.21.0) XWiki Improper Encoding or Escaping of Output Vulnerability (CVE-2023-45135) WordPress Plugin Video Conferencing with Zoom Cross-Site Scripting (4.0.9) Severity High Classification CVE-2019-6970 CWE-918 CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities