Vulnerability CVE-2023-25240


Published: 2023-02-13

Description:
An improper SameSite Attribute vulnerability in pimCore v10.5.15 allows attackers to execute arbitrary code.

 References:
https://portswigger.net/web-security/csrf/bypassing-samesite-restrictions
https://github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/pimcore/pimCore-10.5.15

Copyright 2026, cxsecurity.com

 

Back to Top