Answer in brief
CVE-2023-45727 records a High severity vulnerability in CVE Program Container. The current sources mark it as known exploited. The current feed maps northgrid/proself (generic), North Grid Corporation/Proself Enterprise/Standard Edition (generic), North Grid Corporation/Proself Gateway Edition (generic), North Grid Corporation/Proself Mail Sanitize Edition (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. Known-exploitation status makes exposure review time-sensitive. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps northgrid/proself (generic), North Grid Corporation/Proself Enterprise/Standard Edition (generic), North Grid Corporation/Proself Gateway Edition (generic), North Grid Corporation/Proself Mail Sanitize Edition (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| northgrid/proselfgeneric | 0 | Not reported |
| North Grid Corporation/Proself Enterprise/Standard Editiongeneric | Ver5.62 and earlier | Not reported |
| North Grid Corporation/Proself Gateway Editiongeneric | Ver1.65 and earlier | Not reported |
| North Grid Corporation/Proself Mail Sanitize Editiongeneric | Ver1.08 and earlier | Not reported |
Published upstream
Oct 18, 2023
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Oct 21, 2025
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
May 24, 2026
Added to CISA KEV
Dec 3, 2024
Evidence: source:kev:kev:kev:recordProself Enterprise/Standard Edition Ver5.62 and earlier, Proself Gateway Edition Ver1.65 and earlier, and Proself Mail Sanitize Edition Ver1.08 and earlier allow a remote unauthenticated attacker to conduct XML External Entity (XXE) attacks. By processing a specially crafted request containing malformed XML data, arbitrary files on the server containing account information may be read by the attacker.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2023-45727 records a High severity vulnerability in CVE Program Container. The current sources mark it as known exploited. The current feed maps northgrid/proself (generic), North Grid Corporation/Proself Enterprise/Standard Edition (generic), North Grid Corporation/Proself Gateway Edition (generic), North Grid Corporation/Proself Mail Sanitize Edition (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. Known-exploitation status makes exposure review time-sensitive. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps northgrid/proself (generic), North Grid Corporation/Proself Enterprise/Standard Edition (generic), North Grid Corporation/Proself Gateway Edition (generic), North Grid Corporation/Proself Mail Sanitize Edition (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| northgrid/proselfgeneric | 0 | Not reported |
| North Grid Corporation/Proself Enterprise/Standard Editiongeneric | Ver5.62 and earlier | Not reported |
| North Grid Corporation/Proself Gateway Editiongeneric | Ver1.65 and earlier | Not reported |
| North Grid Corporation/Proself Mail Sanitize Editiongeneric | Ver1.08 and earlier | Not reported |
Published upstream
Oct 18, 2023
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Oct 21, 2025
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
May 24, 2026
Added to CISA KEV
Dec 3, 2024
Evidence: source:kev:kev:kev:recordProself Enterprise/Standard Edition Ver5.62 and earlier, Proself Gateway Edition Ver1.65 and earlier, and Proself Mail Sanitize Edition Ver1.08 and earlier allow a remote unauthenticated attacker to conduct XML External Entity (XXE) attacks. By processing a specially crafted request containing malformed XML data, arbitrary files on the server containing account information may be read by the attacker.
Quoted source text, attributed separately from HOL analysis.