First published: Fri Apr 07 2023(Updated: )
codefever before 2023.2.7-commit-b1c2e7f was discovered to contain a remote code execution (RCE) vulnerability via the component /controllers/api/user.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PGYER Codefever | <2023-02-07 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-26817 is high.
CVE-2023-26817 is a remote code execution (RCE) vulnerability.
CVE-2023-26817 affects the component /controllers/api/user.php.
To fix CVE-2023-26817, update codefever to version 2023.2.7-commit-b1c2e7f or newer.
More information about CVE-2023-26817 can be found at the following reference: https://github.com/PGYER/codefever/issues/140