← Back to browse · API

CVE-2023-41887

Severity
CRITICAL
CVSS
9.8
EPSS
0.45473
Risk score
55.12
CISA KEV
No
PoC
No
Published
2023-09-15
Modified
2024-09-25
First seen
2026-08-07
Aliases
EUVD-2023-2552, GHSA-P3R5-X3HR-GPG5
Products
OpenRefine:OpenRefine ≤ 3.7.4
Sources
euvd EUVD-2023-2552

Description

OpenRefine is a powerful free, open source tool for working with messy data. Prior to version 3.7.5, a remote code execution vulnerability allows any unauthenticated user to execute code on the server. Version 3.7.5 has a patch for this issue.

References