Vulnerability CVE-2024-38274


Published: 2024-06-18

Description:
Insufficient escaping of calendar event titles resulted in a stored XSS risk in the event deletion prompt.

 References:
https://moodle.org/mod/forum/discuss.php?d=459499

Copyright 2026, cxsecurity.com

 

Back to Top