Critical severity9.8NVD Advisory· Published Aug 22, 2025· Updated Jun 17, 2026
CVE-2022-45134
CVE-2022-45134
Description
Mahara 21.10 before 21.10.6, 22.04 before 22.04.4, and 22.10 before 22.10.1 deserializes user input unsafely during skin import. A particularly structured XML file could cause code execution when being processed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*range: >=21.10.0,<21.10.6
- (no CPE)
- (no CPE)range: <21.10.6, <22.04.4, <22.10.1
Patches
Vulnerability mechanics
References
2- bugs.launchpad.net/mahara/+bug/1993082nvdIssue TrackingVendor Advisory
- mahara.org/interaction/forum/topic.phpnvdVendor Advisory
News mentions
0No linked articles in our index yet.