CVE-2019-14884 | Moodle up to 3.5.8/3.6.6/3.7.2 Error Message Reflected cross site scripting
A vulnerability was found in Moodle up to 3.5.8/3.6.6/3.7.2. It has been classified as problematic. Affected is an unknown function of the component Error Message Handler. The manipulation leads to cross site scripting (Reflected).
This vulnerability is traded as CVE-2019-14884. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.