Security Advisory

CVE-2021-37702

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-08-18 14:45:10
Last updated 2024-08-04 01:23:01
Assigner GitHub_M
State PUBLISHED

Description

Pimcore is an open source data & experience management platform. Prior to version 10.1.1, Data Object CSV import allows formular injection. The problem is patched in 10.1.1. Aside from upgrading, one may apply the patch manually as a workaround.