MSA-21-0031: Messaging email notifications containing HTML may hide the final line of the email

by Michael Hawkins.  

In some circumstances, email notifications of messages could have the link back to the original message hidden by HTML, which may pose a phishing risk.


Severity/Risk:Minor
Versions affected:3.11, 3.10 to 3.10.4, 3.9 to 3.9.7 and earlier unsupported versions
Versions fixed:3.11.1, 3.10.5 and 3.9.8
Reported by:i_am_nobody
CVE identifier:CVE-2021-36403
Changes (master):http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-71919
Tracker issue:MDL-71919 Messaging email notifications containing HTML may hide the final line of the email

Read more https://moodle.org/mod/forum/discuss.php?d=424809&parent=1710828