onurcangnc/moodle-xss-pdfannotator

onurcangnc/moodle-xss-pdfannotator

Releases0
The Moodle PDF Annotator plugin’s Public Comments feature doesn’t sanitize user input before displaying it in the PDF viewer. This allows low-privileged users to store malicious JavaScript that executes automatically when others open the annotated document, causing XSS attacks.

Collections containing this project

Showing collections based on your access.

This project is not in any collections you can view.