Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2229 | Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/customer-data-framework prior to 3.4.2. |
Github GHSA |
GHSA-735f-w79p-282x | pimcore/customer-management-framework-bundle Cross-site Scripting vulnerability in Segment name |
Fri, 06 Mar 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pimcore customer Management Framework
|
|
| CPEs | cpe:2.3:a:pimcore:customer_management_framework:*:*:*:*:*:pimcore:*:* | |
| Vendors & Products |
Pimcore customer Data Framework
|
Pimcore customer Management Framework
|
Fri, 11 Oct 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pimcore customer-data-framework
|
|
| CPEs | cpe:2.3:a:pimcore:customer-data-framework:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Pimcore customer-data-framework
|
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: @huntrdev
Published:
Updated: 2024-10-11T18:18:22.385Z
Reserved: 2023-08-03T16:03:58.165Z
Link: CVE-2023-4145
Updated: 2024-08-02T07:17:11.897Z
Status : Analyzed
Published: 2023-08-03T17:15:12.237
Modified: 2026-03-06T19:52:42.667
Link: CVE-2023-4145
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA