CVE-2023-36650: Prolion Cryptospike

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

A missing integrity check in the update system in ProLion CryptoSpike 3.0.15P2 allows attackers to execute OS commands as the root Linux user on the host system via forged update packages.

Affected products

  • Prolion Cryptospike: version 3.0.15 only

Published 2023-12-12. Last modified 2026-06-17.