Логотип exploitDog
bind:CVE-2021-39166
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-39166

Количество 2

Количество 2

nvd логотип

CVE-2021-39166

больше 4 лет назад

Pimcore is an open source data & experience management platform. Prior to version 10.1.2, text-values were not properly escaped before printed in the version preview. This allowed XSS by authenticated users with access to the resources. This issue is patched in Pimcore version 10.1.2.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-w6j8-jc36-x5q9

больше 4 лет назад

Improper Neutralization of Text-Values in Object Version Preview

CVSS3: 8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-39166

Pimcore is an open source data & experience management platform. Prior to version 10.1.2, text-values were not properly escaped before printed in the version preview. This allowed XSS by authenticated users with access to the resources. This issue is patched in Pimcore version 10.1.2.

CVSS3: 8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-w6j8-jc36-x5q9

Improper Neutralization of Text-Values in Object Version Preview

CVSS3: 8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу