CVE Database
/

CVE-2024-33998

Back to search

CVE-2024-33998

Published: May 31, 2024

Modified: Mar 28, 2025

PUBLISHED

Description

Insufficient escaping of participants' names in the participants page table resulted in a stored XSS risk when interacting with some features.

VendorProductVersions

Unknown

Moodle

affected
4.0 - <= 4.3.3
affected
4.2 - <= 4.2.6
affected
4.1 - <= 4.1.9

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now