A vulnerability classified as critical has been found in Apache Pulsar WebSocket Proxy up to 2.8.x/2.9.x/2.10.4/2.11.1/3.0.0. This affects an unknown part of the file /pingpong. The manipulation leads to improper authentication.

This vulnerability is uniquely identified as CVE-2023-37544. It is possible to initiate the attack remotely. There is no exploit available.

It is recommended to upgrade the affected component.