CVE-2023-47322: Silverpeas

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

The "userModify" feature of Silverpeas Core 6.3.1 is vulnerable to Cross Site Request Forgery (CSRF) leading to privilege escalation. If an administrator goes to a malicious URL while being authenticated to the Silverpeas application, the CSRF with execute making the attacker an administrator user in the application.

Affected products

  • Silverpeas Silverpeas: before 6.3.2 (fixed in 6.3.2)

Published 2023-12-13. Last modified 2026-07-09.