UBUNTU-CVE-2023-41887
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-41887
UBUNTU-CVE-2023-41887
Summary:
Details: OpenRefine is a powerful free, open source tool for working with messy data. Prior to version 3.7.5, a remote code execution vulnerability allows any unauthenticated user to execute code on the server. Version 3.7.5 has a patch for this issue.
References: https://ubuntu.com/security/CVE-2023-41887, https://github.com/OpenRefine/OpenRefine/security/advisories/GHSA-p3r5-x3hr-gpg5, https://github.com/OpenRefine/OpenRefine/commit/693fde606d4b5b78b16391c29d110389eb605511, https://www.cve.org/CVERecord?id=CVE-2023-41887, https://ubuntu.com/security/notices/USN-7260-1
Affected packages
Package
Name: openrefine
Purl: pkg:deb/ubuntu/[email protected]~esm1?arch=source&distro=esm-apps/jammy
Affected ranges
Type: ECOSYSTEM
Events:
