CVE-2023-42404: Onevision Workspace

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

OneVision Workspace before WS23.1 SR1 (build w31.040) allows arbitrary Java EL execution.

Affected products

  • Onevision Workspace: version 22.1 only; version 22.2 only; version 23.1 only

Published 2025-04-28. Last modified 2026-06-17.