Critical severity9.8NVD Advisory· Published Mar 30, 2023· Updated Jun 17, 2026
CVE-2023-1712
CVE-2023-1712
Description
Use of Hard-coded, Security-relevant Constants in GitHub repository deepset-ai/haystack prior to 0.1.30.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
farm-haystackPyPI | <= 1.15.0 | — |
Affected products
3- deepset-ai/deepset-ai/haystackv5Range: unspecified
Patches
Vulnerability mechanics
References
5- github.com/deepset-ai/haystack/commit/5fc84904f198de661d5b933fde756aa922bf09f1nvdPatchWEB
- huntr.dev/bounties/9a6b1fb4-ec9b-4cfa-af1e-9ce304924829nvdExploitIssue TrackingPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-w7qg-j435-78qwghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-1712ghsaADVISORY
- github.com/deepset-ai/haystack/pull/4535ghsaWEB
News mentions
0No linked articles in our index yet.