A SQL Injection vulnerability exits in the Ramo plugin for GLPI 9.4.6 via the idu parameter in plugins/ramo/ramoapirest.php/getOutdated.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-44617.json"