CVE-2026-102578 | Moodle up to 4.5.12/5.0.8/5.1.5/5.2.1 Question Bank Web Service sql injection
A vulnerability identified as critical has been detected in Moodle up to 4.5.12/5.0.8/5.1.5/5.2.1. The affected element is an unknown function of the component Question Bank Web Service. Performing a manipulation results in sql injection.
This vulnerability is known as CVE-2026-102578. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.VulDB Recent EntriesRead More