Review reviewCritical
CVE-2023-30186
document server
A use after free issue discovered in ONLYOFFICE DocumentServer 4.0.3 through 7.3.2 allows remote attackers to run arbitrary code via crafted JavaScript file.
- CVSS
- 9.8
- EPSS
- 1.68% 74.7% percentile
- CISA KEV
- Not listed
- Published
- 2023.08.14