VYPR
Critical severity9.8NVD Advisory· Published Mar 8, 2023· Updated Jun 17, 2026

CVE-2023-22889

CVE-2023-22889

Description

SmartBear Zephyr Enterprise through 7.15.0 mishandles user-defined input during report generation. This could lead to remote code execution by unauthenticated users.

Affected products

3
  • SmartBear/Zephyr Enterprisedescription
  • Smartbear/Zephyr Enterprisellm-fuzzy2 versions
    <=7.15.0+ 1 more
    • (no CPE)range: <=7.15.0
    • cpe:2.3:a:smartbear:zephyr_enterprise:*:*:*:*:*:*:*:*range: <=7.15

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.