VDB
CVE-2023-2121
CVE-2023-2121
PUBLISHED
Vault and Vault Enterprise's (Vault) key-value v2 (kv-v2) diff viewer allowed HTML injection into the Vault web UI through key values. This vulnerability, CVE-2023-2121, is fixed in Vault 1.14.0, 1.13.3, 1.12.7, and 1.11.11.
EPSS 0.57% · 69.2th percentile
Risk Scores
EPSS Score
0.57%
69.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | vault | 0, 1.12.0, 1.13.0 |
| Bitnami | vault | 0, 1.12.0, 1.13.0 |
Exploit Intelligence
Timeline
- Jun 9, 2023 CVE Published
- Jun 10, 2023 EPSS Score
- Jul 16, 2023 EPSS Score
- Aug 20, 2023 EPSS Score
- Sep 25, 2023 EPSS Score
- Oct 31, 2023 EPSS Score
- Jan 10, 2024 EPSS Score
- Feb 15, 2024 EPSS Score
- Mar 22, 2024 EPSS Score
- Apr 26, 2024 EPSS Score
- Jun 1, 2024 EPSS Score
- Jul 7, 2024 EPSS Score