CVE-2023-28332
Moodle: algebra filter xss when filter is misconfigured
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.6%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
23 Mar 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
If the algebra filter was enabled but not functional (eg the necessary binaries were missing from the server), it presented an XSS risk.
Affected products
moodleWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →