CVE-2023-40518: Litespeedtech Openlitespeed

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

LiteSpeed OpenLiteSpeed before 1.7.18 does not strictly validate HTTP request headers.

Affected products

Published 2023-08-14. Last modified 2026-06-17.