CVE-2023-28882: Owasp Modsecurity
High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.
Trustwave ModSecurity 3.0.5 through 3.0.8 before 3.0.9 allows a denial of service (worker crash and unresponsiveness) because some inputs cause a segfault in the Transaction class for some configurations.
Affected products
- Owasp Modsecurity: from 3.0.5, before 3.0.9 (fixed in 3.0.9)
Published 2023-04-28. Last modified 2026-06-17.