CVE-2023-48028: Kodcloud Kodbox

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

kodbox 1.46.01 has a security flaw that enables user enumeration. This problem is present on the login page, where an attacker can identify valid users based on varying response messages, potentially paving the way for a brute force attack.

Affected products

Published 2023-11-18. Last modified 2026-06-17.