Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1138 | Pimcore is an open source data and experience management platform. Prior to version 10.5.19, an attacker can use cross-site scripting to send a malicious script to an unsuspecting user. Users may upgrade to version 10.5.19 to receive a patch or, as a workaround, apply the patch manually. |
Github GHSA |
GHSA-x5j3-mq9g-8jc8 | Cross-site Scripting (XSS) in UrlSlug Data type |
Tue, 25 Feb 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-02-25T14:55:17.566Z
Reserved: 2023-03-10T18:34:29.226Z
Link: CVE-2023-28106
Updated: 2024-08-02T12:30:24.552Z
Status : Modified
Published: 2023-03-16T17:15:09.573
Modified: 2024-11-21T07:54:24.977
Link: CVE-2023-28106
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA