CVE-2023-27304: Cybozu Garoon

Medium severity, CVSS 4.3. EPSS: 0.5% chance of exploitation in the next 30 days.

Operation restriction bypass vulnerability in Message and Bulletin of Cybozu Garoon 4.6.0 to 5.9.2 allows a remote authenticated attacker to alter the data of Message and/or Bulletin.

Affected products

  • Cybozu Garoon: from 4.6.0, up to and including 5.9.2

Published 2023-05-23. Last modified 2026-06-17.