CVE-2021-37702

Publication date

2021-08-18 14:45:10

Family

GitHub_M

State

PUBLISHED

Description

Pimcore is an open source data & experience management platform. Prior to version 10.1.1, Data Object CSV import allows formular injection. The problem is patched in 10.1.1. Aside from upgrading, one may apply the patch manually as a workaround.