Medium severity4.9NVD Advisory· Published May 25, 2023· Updated Jun 17, 2026
CVE-2023-2881
CVE-2023-2881
Description
Storing Passwords in a Recoverable Format in GitHub repository pimcore/customer-data-framework prior to 3.3.10.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
pimcore/customer-management-framework-bundlePackagist | < 3.3.10 | 3.3.10 |
Affected products
3- cpe:2.3:a:pimcore:customer_management_framework:*:*:*:*:*:pimcore:*:*Range: <3.3.10
- pimcore/pimcore/customer-data-frameworkv5Range: unspecified
Patches
Vulnerability mechanics
References
5- github.com/pimcore/customer-data-framework/commit/d1d58c10313f080737dc1e71fab3beb12488a1e6nvdPatchWEB
- github.com/advisories/GHSA-j65r-g7q2-f8v3ghsaADVISORY
- huntr.dev/bounties/db6c32f4-742e-4262-8fd5-cefd0f133416nvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2023-2881ghsaADVISORY
- github.com/pimcore/customer-data-framework/security/advisories/GHSA-j65r-g7q2-f8v3ghsaWEB
News mentions
0No linked articles in our index yet.