Vulnerability CVE-2023-4145


Published: 2023-08-03

Description:
Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/customer-data-framework prior to 3.4.2.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://github.com/pimcore/customer-data-framework/commit/72f45dd537a706954e7a71c99fbe318640e846a2
https://huntr.dev/bounties/ce852777-2994-40b4-bb4e-c4d10023eeb0

Copyright 2026, cxsecurity.com

 

Back to Top