NVD Vulnerability Detail
Search Exploit, PoC
CVE-2026-5362
Summary

An authenticated attacker with permission to edit document content can store crafted HTML/JavaScript in a Document embed editable and cause script execution when the published page is rendered.

This issue affects pimcore: v12.3.3.

Publication Date April 28, 2026, 6:16 a.m.
Registration Date April 29, 2026, 4:07 a.m.
Last Update April 28, 2026, 6:16 a.m.
Related information, measures and tools
Common Vulnerabilities List