Vendor
Moodle is vulnerable to several security flaws that may allow an attacker to manipulate files, perform unauthorized data disclosure, or execute cross-site scripting (XSS) attacks.