First published: Fri Jul 14 2023(Updated: )
SQL Injection in GitHub repository pimcore/pimcore prior to 10.5.24.
Credit: security@huntr.dev security@huntr.dev security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Pimcore Pimcore | <10.5.24 | |
composer/pimcore/pimcore | <10.5.24 | 10.5.24 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-3673 is a SQL Injection vulnerability in the GitHub repository pimcore/pimcore prior to version 10.5.24.
CVE-2023-3673 has a severity rating of 7.2 (high).
The software affected by CVE-2023-3673 is pimcore/pimcore prior to version 10.5.24.
To fix CVE-2023-3673, you should upgrade your pimcore/pimcore installation to version 10.5.24 or later.
You can find more information about CVE-2023-3673 at the following references: [GitHub Commit](https://github.com/pimcore/pimcore/commit/a06ce0abdba19ae0eefc38b035e677f8f0c2bce9) and [Huntr Dev](https://huntr.dev/bounties/46ca0934-5260-477b-9e86-7b16bb18d0a9).