cbcvebase.
CVE-2022-30599
published 2022-05-18

CVE-2022-30599: A flaw was found in moodle where an SQL injection risk was identified in Badges code relating to configuring criteria.

critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
A flaw was found in moodle where an SQL injection risk was identified in Badges code relating to configuring criteria.

Affected

13 ranges
VendorProductVersion rangeFixed in
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
moodlemoodle
moodlemoodle
moodlemoodle>= 3.10 < 3.10.113.10.11
moodlemoodle>= 3.10 < 3.10.113.10.11
moodlemoodle>= 3.11 < 3.11.73.11.7
moodlemoodle>= 3.11 < 3.11.73.11.7
moodlemoodle>= 3.9 < 3.9.143.9.14
moodlemoodle>= 3.9 < 3.9.143.9.14
moodlemoodle>= 4.0 < 4.0.14.0.1
redhatenterprise_linux

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL