Medium severity5.4NVD Advisory· Published Nov 2, 2021· Updated Jun 17, 2026
CVE-2021-43265
CVE-2021-43265
Description
In Mahara before 20.04.5, 20.10.3, 21.04.2, and 21.10.0, certain tag syntax could be used for XSS, such as via a SCRIPT element.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*range: >=20.04.0,<20.04.5
- (no CPE)
- (no CPE)range: <20.04.5, <20.10.3, <21.04.2, <21.10.0
Patches
Vulnerability mechanics
References
2- bugs.launchpad.net/mahara/+bug/1944633nvdExploitThird Party Advisory
- mahara.org/interaction/forum/topic.phpnvdVendor Advisory
News mentions
0No linked articles in our index yet.