Known CVE
H2O ImportFiles - Local File Inclusion
An attacker is able to read any file on the server hosting the H2O dashboard without any authentication.
CVE-2023-6038
High2023CVSS 7.5CWE-862
cve2023 · h2o-3 · h2o · ml · vkev · vuln
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website