Cross-Site Request Forgery in OPNsense Community and Business Editions
CVE-2023-38999
6.5MEDIUM
What is CVE-2023-38999?
A vulnerability exists in the System Halt API of OPNsense, affecting both Community and Business Editions up to their respective versions. Attackers can exploit this flaw by sending a specially crafted GET request, leading to a Denial of Service (DoS) condition. Users of OPNsense should ensure they update their systems to the latest versions to mitigate this risk.
