CVE-2023-30261: Openwb

Critical severity, CVSS 9.8. EPSS: 31.7% chance of exploitation in the next 30 days.

Command Injection vulnerability in OpenWB 1.6 and 1.7 allows remote attackers to run arbitrary commands via crafted GET request.

Affected products

  • Openwb Openwb: version 1.6 only; version 1.7 only

Published 2023-06-26. Last modified 2026-06-17.