
onurcangnc/moodle-xss-pdfannotator
Releases0
The Moodle PDF Annotator plugin’s Public Comments feature doesn’t sanitize user input before displaying it in the PDF viewer. This allows low-privileged users to store malicious JavaScript that executes automatically when others open the annotated document, causing XSS attacks.
Collections containing this project
Showing collections based on your access.
This project is not in any collections you can view.