Vulnerability CVE-2023-2756


Published: 2023-05-17

Description:
SQL Injection in GitHub repository pimcore/customer-data-framework prior to 3.3.10.

Type:

CWE-89

(Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'))

 References:
https://github.com/pimcore/customer-data-framework/commit/76df151737b7964ce5169fdf9e27a0ad801757fe
https://huntr.dev/bounties/cf398528-819f-456e-88e7-c06d268d3f44

Copyright 2026, cxsecurity.com

 

Back to Top