Skip to main content
Loading…
    CVE-2025-60506 — Moodle PDF Annotator plugin v1.5 release 9 allows stored cross-site scripting (XSS) via the Public Comments feature. An attacker with a low-privileged account (e.g., Student) can inject arbitrary Java — CVE Database · The Intelligence Room