Vulnerabilities > Pimcore > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-08-03 | CVE-2023-4145 | Cross-site Scripting vulnerability in Pimcore Customer Data Framework Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/customer-data-framework prior to 3.4.2. | 5.4 |
2023-07-21 | CVE-2023-3819 | Information Exposure vulnerability in Pimcore Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository pimcore/pimcore prior to 10.6.4. | 6.5 |
2023-07-21 | CVE-2023-3821 | Cross-site Scripting vulnerability in Pimcore Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.6.4. | 5.4 |
2023-07-21 | CVE-2023-3822 | Cross-site Scripting vulnerability in Pimcore Cross-site Scripting (XSS) - Reflected in GitHub repository pimcore/pimcore prior to 10.6.4. | 6.1 |
2023-07-11 | CVE-2023-37280 | Cross-site Scripting vulnerability in Pimcore Admin Classic Bundle 1.0.0/1.0.1/1.0.2 Pimcore Admin Classic Bundle provides a Backend UI for Pimcore based on the ExtJS framework. | 6.1 |
2023-07-10 | CVE-2023-3574 | Unspecified vulnerability in Pimcore Customer Management Framework Improper Authorization in GitHub repository pimcore/customer-data-framework prior to 3.4.1. | 6.5 |
2023-05-25 | CVE-2023-2881 | Insufficiently Protected Credentials vulnerability in Pimcore Customer-Data-Framework Storing Passwords in a Recoverable Format in GitHub repository pimcore/customer-data-framework prior to 3.3.10. | 4.9 |
2023-05-16 | CVE-2023-2730 | Cross-site Scripting vulnerability in Pimcore Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.3.3. | 5.4 |
2023-05-11 | CVE-2023-32075 | Unspecified vulnerability in Pimcore Customer Management Framework The Customer Management Framework (CMF) for Pimcore adds functionality for customer data management. | 4.3 |
2023-05-10 | CVE-2023-2630 | Cross-site Scripting vulnerability in Pimcore Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.5.21. | 4.8 |