CVE-2023-34758: Bishopfox Sliver

High severity, CVSS 8.1. EPSS: 0.6% chance of exploitation in the next 30 days.

Sliver from v1.5.x to v1.5.39 has an improper cryptographic implementation, which allows attackers to execute a man-in-the-middle attack via intercepted and crafted responses.

Affected products

  • Bishopfox Sliver: from 1.5.0, before 1.5.40 (fixed in 1.5.40)

Published 2023-08-28. Last modified 2026-06-17.