| Summary | An authenticated attacker with permission to edit document content can store crafted HTML/JavaScript in a Document embed editable and cause script execution when the published page is rendered. This issue affects pimcore: v12.3.3. |
|---|---|
| Publication Date | April 28, 2026, 6:16 a.m. |
| Registration Date | April 29, 2026, 4:07 a.m. |
| Last Update | April 28, 2026, 6:16 a.m. |