VYPR
Medium severity6.5NVD Advisory· Published Dec 14, 2022· Updated Jun 17, 2026

CVE-2022-47407

CVE-2022-47407

Description

An issue was discovered in the fp_masterquiz (aka Master-Quiz) extension before 2.2.1, and 3.x before 3.5.1, for TYPO3. An attacker can continue the quiz of a different user. In doing so, the attacker can view that user's answers and modify those answers.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
fixpunkt/fp-masterquizPackagist
>= 3.0.0, < 3.5.23.5.2
fixpunkt/fp-masterquizPackagist
< 2.2.12.2.1

Affected products

3

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.