Vulnerabilities > Pimcore > Pimcore > 5.1.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-01-18 | CVE-2022-0262 | Cross-site Scripting vulnerability in Pimcore Cross-site Scripting (XSS) - Stored in Packagist pimcore/pimcore prior to 10.2.7. | 4.3 |
2022-01-18 | CVE-2022-0263 | Unrestricted Upload of File with Dangerous Type vulnerability in Pimcore Unrestricted Upload of File with Dangerous Type in Packagist pimcore/pimcore prior to 10.2.7. | 4.6 |
2022-01-18 | CVE-2022-0260 | Cross-site Scripting vulnerability in Pimcore Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.2.7. | 3.5 |
2022-01-17 | CVE-2022-0256 | Cross-site Scripting vulnerability in Pimcore pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | 3.5 |
2022-01-17 | CVE-2022-0257 | Cross-site Scripting vulnerability in Pimcore pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | 3.5 |
2022-01-17 | CVE-2022-0258 | SQL Injection vulnerability in Pimcore pimcore is vulnerable to Improper Neutralization of Special Elements used in an SQL Command | 6.5 |
2021-12-21 | CVE-2021-4139 | Cross-site Scripting vulnerability in Pimcore pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | 6.0 |
2021-12-10 | CVE-2021-4084 | Cross-site Scripting vulnerability in Pimcore pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | 4.3 |
2021-12-10 | CVE-2021-4081 | Cross-site Scripting vulnerability in Pimcore pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | 4.3 |
2021-12-10 | CVE-2021-4082 | Cross-Site Request Forgery (CSRF) vulnerability in Pimcore pimcore is vulnerable to Cross-Site Request Forgery (CSRF) | 4.3 |