← back
CVE-2023-0297criticalobserved exploitationCWE-94

Code Injection in pyload/pyload

100Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actcvss 9.8epss 96%
from disclosure to weapon0 days
Published on NVDJan 14
1st PoCJan 9
metasploitJan 13
VulnCheck+373d
exploitation probability
96%top 1% of all CVEs
observed exploitation
yesVulnCheck
16 public exploit(s)
Code Injection in GitHub repository pyload/pyload prior to 0.5.0b3.dev31.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
pyload · pyload/pyload
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.