CVE-2023-39059: Ansible-Semaphore Ansible Semaphore

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

An issue in ansible semaphore v.2.8.90 allows a remote attacker to execute arbitrary code via a crafted payload to the extra variables parameter.

Affected products

Published 2023-08-28. Last modified 2026-06-17.