Vulnerabilities > Pimcore > Customer Management Framework > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-05-17 | CVE-2023-2756 | Unspecified vulnerability in Pimcore Customer Management Framework SQL Injection in GitHub repository pimcore/customer-data-framework prior to 3.3.10. | 7.2 |
2023-05-10 | CVE-2023-2629 | Unspecified vulnerability in Pimcore Customer Management Framework Improper Neutralization of Formula Elements in a CSV File in GitHub repository pimcore/customer-data-framework prior to 3.3.9. | 7.8 |
2021-08-04 | CVE-2021-31867 | SQL Injection vulnerability in Pimcore Customer Management Framework Pimcore Customer Data Framework version 3.0.0 and earlier suffers from a Boolean-based blind SQL injection issue in the $id parameter of the SegmentAssignmentController.php component of the application. | 7.5 |