We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2023-40827



Assignermitre
Reserved2023-08-22
Published2023-08-28
Updated2024-10-02

Description

An issue in pf4j pf4j v.3.9.0 and before allows a remote attacker to obtain sensitive information and execute arbitrary code via the loadpluginPath parameter.

References

https://github.com/pf4j/pf4j/issues/536

https://github.com/pf4j/pf4j/pull/537

https://github.com/pf4j/pf4j/pull/537/commits/ed9392069fe14c6c30d9f876710e5ad40f7ea8c1

cve.org CVE-2023-40827

nvd.nist.gov CVE-2023-40827

Download JSON

Share this page
https://cve.threatint.com
Subscribe to our newsletter to learn more about our work.