Back to search
CVE-2022-45151
Published: Nov 23, 2022
Modified: Apr 25, 2025
PUBLISHED
Description
The stored-XSS vulnerability was discovered in Moodle which exists due to insufficient sanitization of user-supplied data in several "social" user profile fields. An attacker could inject and execute arbitrary HTML and script code in user's browser in context of vulnerable website.
| Vendor | Product | Versions |
|---|---|---|
n/a | Moodle | affected Fixed in moodle 4.0.5, moodle 3.11.11 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now