CVE-2023-27096: Opengoofy HIPPO4J

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

Insecure Permissions vulnerability found in OpenGoofy Hippo4j v.1.4.3 allows attacker to obtain sensitive information via the ConfigVerifyController function of the Tenant Management module.

Affected products

Published 2023-03-27. Last modified 2026-06-17.