CVE-2023-30186
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A use after free issue discovered in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows remote attackers to run arbitrary code via crafted JavaScript file.
| Vendor | n/a |
| Product | n/a |
| Published | Aug 14, 2023 |
| Last Updated | Oct 9, 2024 |
Stay Ahead of the Next One
Get instant alerts for n/a n/a
Be the first to know when new unknown vulnerabilities affecting n/a n/a are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
n/a / n/a
n/a
References
github.com: https://github.com/ONLYOFFICE/DocumentServer onlyoffice.com: http://onlyoffice.com github.com: https://github.com/ONLYOFFICE/core/blob/8ca40a44ce47a86168327a46db91253cf6bb205d/DesktopEditor/doctrenderer/ github.com: https://github.com/ONLYOFFICE/core/blob/8ca40a44ce47a86168327a46db91253cf6bb205d/DesktopEditor/doctrenderer/embed/NativeControlEmbed.cpp#L110 github.com: https://github.com/ONLYOFFICE/core/commit/2b6ad83b36afd9845085b536969d366d1d61150a gist.github.com: https://gist.github.com/merrychap/25eba8c4dd97c9e545edad1b8f0eadc2