This affects the package pimcore/pimcore prior to 10.0.7. This issue exists due to the absence of check on the storeId parameter in the method collectionsActionGet and groupsActionGet method within the ClassificationstoreController class.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
pimcore pimcore |