PKSA-88th-p7sv-k9g4 Security Advisory
-
[MEDIUM] Pimcore is Vulnerable to Broken Access Control: Missing Function Level Authorization on "Static Routes" Listing
PKSA-88th-p7sv-k9g4 CVE-2026-23494 GHSA-m3r2-724c-pwgf
Affected package: pimcore/pimcore
Affected version: <=11.5.13|>=12.0.0-RC1,<=12.3
Reported by:
GitHub