Cross Site Scripting vulnerability in Moodle CMS v3.10 allows a remote attacker to execute arbitrary code via the Field Name (name parameter) of a new activity. Reference: https://github.com/MohamedAzizMSALLEMI/Moodle_Security/blob/main/CVE-2024-37674.md
Created moodle tracking bugs for this issue: Affects: epel-all [bug 2293707] Affects: fedora-all [bug 2293708]