[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2023-45539":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":43,"aliases":44,"duplicate_of":9,"upstream":45,"downstream":46,"duplicates":85,"related":86,"reserved_at":9,"published_at":99,"modified_at":100,"state":101,"summary":102,"references_raw":111,"kevs":132,"epss":133,"epss_history":136,"metrics":406,"affected":413},"CVE-2023-45539","HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.",null,[11,18],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":9,"likelihood_of_exploit":9,"capec":17},"NVD-CWE-NOINFO","Insufficient Information","NVD uses this CWE ID when there is insufficient information to assign a specific CWE.","placeholder","NVD-Reserved",[],{"_key":19,"id":19,"name":20,"description":21,"type":22,"status":23,"abstraction":24,"likelihood_of_exploit":25,"capec":26},"CWE-116","Improper Encoding or Escaping of Output","The product prepares a structured message for communication with another component, but encoding or escaping of the data is either missing or done incorrectly. As a result, the intended structure of the message is not preserved.","weakness","Draft","Class","High",[27,31,35,39],{"id":28,"name":29,"techniques":30},"CAPEC-104","Cross Zone Scripting",[],{"id":32,"name":33,"techniques":34},"CAPEC-73","User-Controlled Filename",[],{"id":36,"name":37,"techniques":38},"CAPEC-81","Web Server Logs Tampering",[],{"id":40,"name":41,"techniques":42},"CAPEC-85","AJAX Footprinting",[],[],[],[],[47,49,51,53,55,57,59,61,63,65,67,69,71,73,75,77,79,81,83],{"_key":48},"SUSE-SU-2023:4645-1",{"_key":50},"SUSE-SU-2023:4646-1",{"_key":52},"SUSE-SU-2024:2377-1",{"_key":54},"UBUNTU-CVE-2023-45539",{"_key":56},"USN-6530-1",{"_key":58},"SUSE-SU-2023:4647-1",{"_key":60},"DLA-3688-1",{"_key":62},"DSA-5590-1",{"_key":64},"RHSA-2024:10267",{"_key":66},"RHSA-2024:10271",{"_key":68},"RHSA-2024:1089",{"_key":70},"RHSA-2024:1142",{"_key":72},"RHSA-2024:8849",{"_key":74},"RHSA-2024:8874",{"_key":76},"RHSA-2024:9945",{"_key":78},"DEBIAN-CVE-2023-45539",{"_key":80},"RHSA-2024:6412",{"_key":82},"USN-6530-2",{"_key":84},"RHSA-2024:4853",[],[87,88,89,90,91,93,95,97],{"_key":48},{"_key":50},{"_key":52},{"_key":58},{"_key":92},"CGA-4QPX-8FCR-RGX5",{"_key":94},"CGA-8HRP-X6MC-Q228",{"_key":96},"CGA-XQWW-H9PF-PPRW",{"_key":98},"CGA-X3QV-94FQ-97M9","2023-11-28T00:00:00.000Z","2024-10-15T17:44:03.661Z","Modified",{"cisa_kev":103,"cisa_ransomware":103,"cisa_vendor":9,"epss_severity":104,"epss_score":105,"severity":106,"severity_score":107,"severity_version":108,"severity_source":109,"severity_vector":110,"severity_status":101},false,"low",0.00027,"high",8.2,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N",[112,118,123,128],{"url":113,"sources":114,"tags":116},"https://lists.w3.org/Archives/Public/ietf-http-wg/2023JulSep/0070.html",[109,115],"nvd",[117],"Mailing List",{"url":119,"sources":120,"tags":121},"https://git.haproxy.org/?p=haproxy.git%3Ba=commit%3Bh=2eab6d354322932cfec2ed54de261e4347eca9a6",[109,115],[122],"Broken Link",{"url":124,"sources":125,"tags":126},"https://www.mail-archive.com/haproxy%40formilux.org/msg43861.html",[109,115],[127],"Release Notes",{"url":129,"sources":130,"tags":131},"https://lists.debian.org/debian-lts-announce/2023/12/msg00010.html",[109,115],[117],[],{"date":134,"score":105,"percentile":135},"2026-06-04",0.08181,[137,141,144,147,150,153,156,159,162,165,168,171,174,177,180,184,187,190,193,196,199,202,205,208,211,214,217,220,223,226,229,232,235,238,241,243,246,249,252,255,258,261,263,266,269,272,275,278,281,284,287,290,293,296,299,302,305,308,310,313,316,319,323,326,329,332,335,338,341,344,347,350,353,356,359,362,365,368,371,374,377,380,383,386,389,392,395,397,400,403],{"date":138,"score":139,"percentile":140},"2025-11-04",0.0002,0.0398,{"date":142,"score":139,"percentile":143},"2025-11-05",0.03986,{"date":145,"score":139,"percentile":146},"2025-11-06",0.0402,{"date":148,"score":139,"percentile":149},"2025-11-07",0.04095,{"date":151,"score":139,"percentile":152},"2025-11-08",0.04097,{"date":154,"score":139,"percentile":155},"2025-11-09",0.04096,{"date":157,"score":139,"percentile":158},"2025-11-10",0.0408,{"date":160,"score":139,"percentile":161},"2025-11-11",0.04117,{"date":163,"score":139,"percentile":164},"2025-11-12",0.04146,{"date":166,"score":139,"percentile":167},"2025-11-13",0.04176,{"date":169,"score":139,"percentile":170},"2025-11-14",0.04184,{"date":172,"score":139,"percentile":173},"2025-11-15",0.04222,{"date":175,"score":139,"percentile":176},"2025-11-16",0.04229,{"date":178,"score":139,"percentile":179},"2025-11-17",0.04226,{"date":181,"score":182,"percentile":183},"2025-11-18",0.00024,0.0317,{"date":185,"score":182,"percentile":186},"2025-11-19",0.03221,{"date":188,"score":182,"percentile":189},"2025-11-20",0.03285,{"date":191,"score":139,"percentile":192},"2025-11-21",0.04265,{"date":194,"score":139,"percentile":195},"2025-11-22",0.0427,{"date":197,"score":139,"percentile":198},"2025-11-23",0.04266,{"date":200,"score":139,"percentile":201},"2025-11-24",0.04239,{"date":203,"score":139,"percentile":204},"2025-11-25",0.04246,{"date":206,"score":139,"percentile":207},"2025-11-26",0.04291,{"date":209,"score":139,"percentile":210},"2025-11-27",0.04308,{"date":212,"score":139,"percentile":213},"2025-11-28",0.04292,{"date":215,"score":139,"percentile":216},"2025-11-29",0.04347,{"date":218,"score":139,"percentile":219},"2025-11-30",0.04351,{"date":221,"score":139,"percentile":222},"2025-12-01",0.04443,{"date":224,"score":139,"percentile":225},"2025-12-02",0.04458,{"date":227,"score":139,"percentile":228},"2025-12-03",0.04477,{"date":230,"score":139,"percentile":231},"2025-12-04",0.04425,{"date":233,"score":139,"percentile":234},"2025-12-05",0.04494,{"date":236,"score":139,"percentile":237},"2025-12-06",0.04506,{"date":239,"score":139,"percentile":240},"2025-12-07",0.04507,{"date":242,"score":139,"percentile":237},"2025-12-08",{"date":244,"score":139,"percentile":245},"2025-12-09",0.04557,{"date":247,"score":139,"percentile":248},"2025-12-10",0.04601,{"date":250,"score":139,"percentile":251},"2025-12-11",0.04595,{"date":253,"score":139,"percentile":254},"2025-12-12",0.0461,{"date":256,"score":139,"percentile":257},"2025-12-13",0.04652,{"date":259,"score":139,"percentile":260},"2025-12-14",0.04637,{"date":262,"score":139,"percentile":251},"2025-12-15",{"date":264,"score":105,"percentile":265},"2025-12-16",0.06925,{"date":267,"score":105,"percentile":268},"2025-12-17",0.07016,{"date":270,"score":105,"percentile":271},"2025-12-18",0.07078,{"date":273,"score":105,"percentile":274},"2025-12-19",0.07074,{"date":276,"score":105,"percentile":277},"2025-12-20",0.07068,{"date":279,"score":105,"percentile":280},"2025-12-21",0.07055,{"date":282,"score":105,"percentile":283},"2025-12-22",0.07011,{"date":285,"score":105,"percentile":286},"2025-12-23",0.07001,{"date":288,"score":105,"percentile":289},"2025-12-24",0.07024,{"date":291,"score":105,"percentile":292},"2025-12-25",0.07092,{"date":294,"score":105,"percentile":295},"2025-12-26",0.07097,{"date":297,"score":105,"percentile":298},"2025-12-27",0.07096,{"date":300,"score":105,"percentile":301},"2025-12-28",0.07095,{"date":303,"score":105,"percentile":304},"2025-12-29",0.07075,{"date":306,"score":105,"percentile":307},"2025-12-30",0.07052,{"date":309,"score":105,"percentile":292},"2025-12-31",{"date":311,"score":105,"percentile":312},"2026-01-01",0.07151,{"date":314,"score":105,"percentile":315},"2026-01-02",0.07148,{"date":317,"score":105,"percentile":318},"2026-01-03",0.07142,{"date":320,"score":321,"percentile":322},"2026-01-04",0.00034,0.09464,{"date":324,"score":321,"percentile":325},"2026-01-05",0.09428,{"date":327,"score":321,"percentile":328},"2026-01-06",0.09419,{"date":330,"score":321,"percentile":331},"2026-01-07",0.09454,{"date":333,"score":321,"percentile":334},"2026-01-08",0.09511,{"date":336,"score":321,"percentile":337},"2026-01-09",0.09533,{"date":339,"score":321,"percentile":340},"2026-01-10",0.09542,{"date":342,"score":321,"percentile":343},"2026-01-11",0.09494,{"date":345,"score":321,"percentile":346},"2026-01-12",0.09475,{"date":348,"score":321,"percentile":349},"2026-01-13",0.09443,{"date":351,"score":321,"percentile":352},"2026-01-14",0.095,{"date":354,"score":321,"percentile":355},"2026-01-15",0.09512,{"date":357,"score":321,"percentile":358},"2026-01-16",0.09549,{"date":360,"score":321,"percentile":361},"2026-01-17",0.09556,{"date":363,"score":321,"percentile":364},"2026-01-18",0.0952,{"date":366,"score":321,"percentile":367},"2026-01-19",0.09477,{"date":369,"score":321,"percentile":370},"2026-01-20",0.0945,{"date":372,"score":321,"percentile":373},"2026-01-21",0.09418,{"date":375,"score":321,"percentile":376},"2026-01-22",0.09404,{"date":378,"score":105,"percentile":379},"2026-01-23",0.07127,{"date":381,"score":105,"percentile":382},"2026-01-24",0.07189,{"date":384,"score":105,"percentile":385},"2026-01-25",0.07112,{"date":387,"score":105,"percentile":388},"2026-01-26",0.07093,{"date":390,"score":105,"percentile":391},"2026-01-27",0.0708,{"date":393,"score":105,"percentile":394},"2026-01-28",0.07057,{"date":396,"score":105,"percentile":307},"2026-01-29",{"date":398,"score":105,"percentile":399},"2026-01-30",0.07065,{"date":401,"score":105,"percentile":402},"2026-01-31",0.07087,{"date":404,"score":105,"percentile":405},"2026-02-01",0.07123,[407,411],{"source":109,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":408,"cvss_v4_0":9},{"baseScore":107,"baseSeverity":409,"vectorString":110,"impactScore":4,"exploitabilityScore":410},"HIGH",10,{"source":115,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":412,"cvss_v4_0":9},{"baseScore":107,"baseSeverity":409,"vectorString":110,"impactScore":4,"exploitabilityScore":410},[414],{"ecosystem":9,"name":415,"vendor":415,"product":415,"cpe_part":416,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":417},"haproxy","a",[418],{"version":419,"is_range":420,"range_type":421,"version_start":9,"version_start_type":9,"version_end":422,"version_end_type":423,"fixed_in":9},"lt2.8.2",true,"cpe","2.8.2","excluding"]