CVE-2023-39150: MAXIMUS5 Conemu
Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.
ConEmu before commit 230724 does not sanitize title responses correctly for control characters, potentially leading to arbitrary code execution. This is related to an incomplete fix for CVE-2022-46387.
Affected products
- MAXIMUS5 Conemu: before 23.07.24 (fixed in 23.07.24)
Published 2023-09-12. Last modified 2026-06-17.