CVE-2019-15536: Youracclaim Acclaim

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

The Acclaim block plugin before 2019-06-26 for Moodle allows SQL Injection via delete_records.

Affected products

  • Youracclaim Acclaim: before 2019-06-26 (fixed in 2019-06-26)

Published 2019-08-23. Last modified 2026-06-17.