Pimcore prior to 10.3.3 is vulnerable to stored cross-site scripting at the Title field
in SEO & Settings
tab of Document
.
{ "github_reviewed_at": "2023-05-16T17:30:52Z", "cwe_ids": [ "CWE-79" ], "nvd_published_at": "2023-05-16T12:15:09Z", "severity": "MODERATE", "github_reviewed": true }