CVE-2023-46819

CVE-2023-46819: Apache OFBiz: Execution of Solr plugin queries without authentication

Vendor Apache Software Foundation
Product Apache OFBiz
Weakness CWE-306 · Missing auth
Published November 7, 2023
Last update September 4, 2024

CVSS base score

What the vulnerability does

Description

Missing Authentication in Apache Software Foundation Apache OFBiz when using the Solr plugin. This issue affects Apache OFBiz: before 18.12.09.  Users are recommended to upgrade to version 18.12.09

Key dates

Disclosure timeline

November 7, 2023 CVE published
September 4, 2024 Record updated