Description
This affects the package pimcore/pimcore before 10.0.7. This issue exists due to the absence of check on the storeId parameter in the method collectionsActionGet and groupsActionGet method within the ClassificationstoreController class.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1465 | This affects the package pimcore/pimcore before 10.0.7. This issue exists due to the absence of check on the storeId parameter in the method collectionsActionGet and groupsActionGet method within the ClassificationstoreController class. |
Github GHSA |
GHSA-g8jx-66p8-vcm2 | SQL injection in pimcore/pimcore |
References
History
No history.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-09-16T19:04:05.999Z
Reserved: 2021-01-08T00:00:00.000Z
Link: CVE-2021-23405
No data.
Status : Modified
Published: 2021-07-09T13:15:07.700
Modified: 2024-11-21T05:51:39.490
Link: CVE-2021-23405
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA