U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2023-45859

Change History

Initial Analysis by NIST 5/13/2025 10:52:22 AM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
OR
          *cpe:2.3:a:hazelcast:hazelcast:*:*:*:*:*:*:*:* versions from (including) 5.2.0 up to (excluding) 5.2.5
          *cpe:2.3:a:hazelcast:hazelcast:*:*:*:*:*:*:*:* versions from (including) 5.3.0 up to (excluding) 5.3.5
          *cpe:2.3:a:hazelcast:hazelcast:*:*:*:*:*:*:*:* versions up to (including) 4.1.10
          *cpe:2.3:a:hazelcast:hazelcast:*:*:*:*:*:*:*:* versions from (including) 4.2.0 up to (including) 4.2.8
          *cpe:2.3:a:hazelcast:hazelcast:*:*:*:*:*:*:*:* versions from (including) 5.0.0 up to (including) 5.0.5
          *cpe:2.3:a:hazelcast:hazelcast:*:*:*:*:*:*:*:* versions from (including) 5.1.0 up to (including) 5.1.7
Added Reference Type

								
							
							
						
CVE: https://github.com/hazelcast/hazelcast/pull/25509 Types: Patch
Added Reference Type

								
							
							
						
CVE: https://github.com/hazelcast/hazelcast/security/advisories/GHSA-xh6m-7cr7-xx66 Types: Vendor Advisory
Added Reference Type

								
							
							
						
MITRE: https://github.com/hazelcast/hazelcast/pull/25509 Types: Patch
Added Reference Type

								
							
							
						
MITRE: https://github.com/hazelcast/hazelcast/security/advisories/GHSA-xh6m-7cr7-xx66 Types: Vendor Advisory