Headline
GHSA-7mmc-22g7-3xq2: Moodle SQL Injection vulnerability
The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in external Wiki method for listing pages. A remote attacker can send a specially crafted request to the affected application and execute limited SQL commands within the application database.
Moodle SQL Injection vulnerability
High severity GitHub Reviewed Published May 2, 2023 to the GitHub Advisory Database • Updated May 2, 2023
Related news
CVE-2023-30944
The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in external Wiki method for listing pages. A remote attacker can send a specially crafted request to the affected application and execute limited SQL commands within the application database.