CVE-2026-44741
HIGH SEVERITYCVSS Score & Metrics
Base Score
8.8 / 10
Vulnerability Description
Pimcore Admin Classic Bundle Vulnerable to SQL Injection in Translation Grid Date Filter via Unsanitized Property Parameter
Vulnerability Details
Published Date
Last Modified
Source
GitHub
Vendor
composer
Product
pimcore/admin-ui-classic-bundle
External References
- https://github.com/pimcore/pimcore/security/advisories/GHSA-h4ph-crvj-9h92
- https://github.com/pimcore/admin-ui-classic-bundle/pull/1111
- https://github.com/pimcore/admin-ui-classic-bundle/commit/80e57a23d9e19574eddfe9b08e8f26785b2b0d90
- https://github.com/pimcore/admin-ui-classic-bundle/releases/tag/v2.3.6
- https://github.com/advisories/GHSA-h4ph-crvj-9h92
Discussion (0)
Add Comment
No comments yet. Be the first!