CVE-2023-27094: Opengoofy HIPPO4J

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue found in OpenGoofy Hippo4j v.1.4.3 allows attackers to escalate privileges via the ThreadPoolController of the tenant Management module.

Affected products

Published 2023-03-23. Last modified 2026-06-17.