Launchpad.net

CVE 2021-32244

Cross Site Scripting (XSS) in Moodle 3.10.3 allows remote attackers to execute arbitrary web script or HTML via the "Description" field.

See the CVE page on Mitre.org for more details.

References