CVE-2021-37702
EPSS 0.04%Improper Neutralization of Formula Elements in a CSV File in pimcore/pimcore
發布日:2021/8/30修改日:2026/3/13
描述
### Impact Data Object CSV import allows formular injection. ### Patches Problem is patched in 10.1.1 ### Workarounds Apply https://github.com/pimcore/pimcore/pull/9992.patch ### References https://cwe.mitre.org/data/definitions/1236.html
受影響套件(1)
- Packagist/pimcore/pimcorefrom 0, < 10.1.1