CVE-2023-24470: Micro Focus Arcsight Logger

Critical severity, CVSS 9.1. EPSS: 0.9% chance of exploitation in the next 30 days.

Potential XML External Entity Injection in ArcSight Logger versions prior to 7.3.0.

Affected products

  • Micro Focus Arcsight Logger: before 7.3.0 (fixed in 7.3.0)

Published 2023-06-13. Last modified 2026-06-17.