VYPR
Unrated severityNVD Advisory· Published Aug 4, 2021· Updated Sep 17, 2024

Pimcore AdminBundle 'specificID' SQL Injection

CVE-2021-31869

Description

Pimcore AdminBundle version 6.8.0 and earlier suffers from a SQL injection issue in the specificID variable used by the application. This issue was fixed in version 6.9.4 of the product.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Pimcore/Pimcorellm-fuzzy
    Range: <=6.8.0, fixed in 6.9.4
  • Pimcore/Pimcore AdminBundlev5
    Range: 6.8.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.