CVE-2023-41717: Zscaler Proxy

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Inappropriate file type control in Zscaler Proxy versions 3.6.1.25 and prior allows local attackers to bypass file download/upload restrictions.

Affected products

  • Zscaler Zscaler Proxy: up to and including 3.6.1.25

Published 2023-08-31. Last modified 2026-06-17.