← Back to browse · API

CVE-2023-34063

Severity
CRITICAL
CVSS
9.9
EPSS
0.00949
Risk score
39.93
CISA KEV
No
PoC
No
Published
2024-01-16
Modified
2025-06-20
First seen
2026-08-07
Aliases
EUVD-2023-38176, GHSA-FCWW-V4HR-RGFR
Products
n/a:VMware Aria Automation, VMware Cloud Foundation Aria Automation 8.14.1, Aria Automation 8.14.0, Aria Automation 8.13.1, Aria Automation 8.13.0, Aria Automation 8.12.2, Aria Automation 8.12.1, Aria Automation 8.12.0, Aria Automation 8.11.2, Aria Automation 8.11.1, Aria Automation 8.11.0
Sources
euvd EUVD-2023-38176

Description

Aria Automation contains a Missing Access Control vulnerability. An authenticated malicious actor may exploit this vulnerability leading to unauthorized access to remote organizations and workflows.

References