An issue was discovered in Mbed TLS through 3.5.1. In mbedtlssslsession_reset, the maximum negotiable TLS version is mishandled. For example, if the last connection negotiated TLS 1.2, then 1.2 becomes the new maximum.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52353.json"