CVE-2023-2239: Exposure of Private Personal Information to an Unauthorized Actor in microweber/microweber
Published Apr 22, 2023
·Updated
Exposure of Private Personal Information to an Unauthorized Actor in GitHub repository microweber/microweber prior to 1.3.4.
Affected Software
2 affected componentsFixes available
composer/microweber/microweber<1.3.4
1.3.4
Microweber Microweber<1.3.4
Remediation
Event History
Apr 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Advisory Published
06:30 PM
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-2239.
2
What is the severity of CVE-2023-2239?
The severity of CVE-2023-2239 is high.
3
Which software version is affected by CVE-2023-2239?
The software version affected by CVE-2023-2239 is Microweber prior to 1.3.4.
4
How can an unauthorized actor access private personal information in the affected GitHub repository?
An unauthorized actor can access private personal information in the affected GitHub repository by exploiting the vulnerability in Microweber prior to version 1.3.4.
5
How can I fix the CVE-2023-2239 vulnerability?
To fix the CVE-2023-2239 vulnerability, update Microweber to version 1.3.4 or later.