CVE-2023-47321: Silverpeas

Medium severity, CVSS 4.9. EPSS: 0.6% chance of exploitation in the next 30 days.

Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control via the "Porlet Deployer" which allows administrators to deploy .WAR portlets.

Affected products

  • Silverpeas Silverpeas: before 6.3.2 (fixed in 6.3.2)

Published 2023-12-13. Last modified 2026-07-09.