ZeroHour

CVE-2022-0332

CVSS 3.1
9.8 critical
EPSS
45%p99
Published
()
Modified
Description

A flaw was found in Moodle in versions 3.11 to 3.11.4. An SQL injection risk was identified in the h5p activity web service responsible for fetching user attempt data.

Vendors
moodle
Products
moodle
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.