Lucene search

K
cvelistMitreCVELIST:CVE-2023-40828
HistoryAug 28, 2023 - 12:00 a.m.

CVE-2023-40828

2023-08-2800:00:00
mitre
www.cve.org
1
cve-2023-40828
pf4j
remote attacker
sensitive information
arbitrary code
expandifzip method
extract function

AI Score

7.9

Confidence

High

EPSS

0.005

Percentile

75.6%

An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the expandIfZip method in the extract function.

AI Score

7.9

Confidence

High

EPSS

0.005

Percentile

75.6%