-
Bug
-
Resolution: Not a bug
-
Minor
-
None
-
1.8
-
None
-
Mamp (osx, mysql, apache, php)
-
MySQL
-
MOODLE_18_STABLE
It is possible to inject js into the description of new assignments by using a simple script tag.
- will be (partly) resolved by
-
MDL-58639 Remove RISK_XSS from capabilities, instead rely on moodle/site:trustcontent
-
- Reopened
-