Junglewise Threat Intelligence

CVE-2023-37280: Pimcore admin UI vulnerable to Cross-site Scripting in 2 factor authentication setup page

CVE-2023-37280 · Severity: low · CVSS 3.1 · Published 2023-07-12

Technologies: pimcore/admin-ui-classic-bundle (Packagist). Vendors: Packagist.

Executive brief

Pimcore admin UI vulnerable to Cross-site Scripting in 2 factor authentication setup page

Affected products

  • Packagist pimcore/admin-ui-classic-bundle

Related threats