← Back to CVE List

CVE-2023-28850

Published: 2023-04-03T18:15Z
Last Modified: 2024-11-21T07:56Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Pimcore Perspective Editor provides an editor for Pimcore that allows users to add/remove/edit custom views and perspectives. This vulnerability has the potential to steal a user's cookie and gain unauthorized access to that user's account through the stolen cookie or redirect users to other malicious sites. Version 1.5.1 has a patch. As a workaround, one may apply the patch manually. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt