VYPR
Critical severity9.8NVD Advisory· Published Aug 22, 2025· Updated Jun 17, 2026

CVE-2022-45134

CVE-2022-45134

Description

Mahara 21.10 before 21.10.6, 22.04 before 22.04.4, and 22.10 before 22.10.1 deserializes user input unsafely during skin import. A particularly structured XML file could cause code execution when being processed.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:mahara:mahara:*:*:*:*:*:*:*:*range: >=21.10.0,<21.10.6
    • (no CPE)
    • (no CPE)range: <21.10.6, <22.04.4, <22.10.1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.