CVE-2025-67850 | Moodle up to 4.1.21/4.4.11/4.5.7/5.0.3/5.1.0 Formula Editor cross site scripting (Nessus ID 297865)
A vulnerability identified as problematic has been detected in Moodle up to 4.1.21/4.4.11/4.5.7/5.0.3/5.1.0. This affects an unknown part of the component Formula Editor. The manipulation leads to cross site scripting.
This vulnerability is documented as CVE-2025-67850. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.