This security fix has been published: xblock-drag-and-drop-v2 · PyPI
The updated version of the XBlock has been merged to edx-platform in master, olive and nutmeg.
- feat!: update Drag and Drop v2 XBlock to prevent XSS vulnerabilities by feanil · Pull Request #31359 · openedx/edx-platform · GitHub
- feat!: update Drag and Drop v2 XBlock to prevent XSS vulnerabilities (Nutmeg backport) by Agrendalath · Pull Request #31354 · openedx/edx-platform · GitHub
- feat!: update Drag and Drop v2 XBlock to prevent XSS vulnerabilities (Olive backport) by Agrendalath · Pull Request #31353 · openedx/edx-platform · GitHub