{"api_version":"v1","generated_at":"2026-10-07T08:05:00+00:00","product":{"cve_count":5,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-pimcore-pimcore-customer-data-framework-b28cb9f747cc","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"pimcore/customer-data-framework","next_cursor":null,"observations":[{"affected":"unspecified < 3.4.2","affected_versions_present":true,"cve_id":"CVE-2023-4145","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-4145","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-10-11T18:18:22.385Z","patch_url":"https://huntr.dev/bounties/ce852777-2994-40b4-bb4e-c4d10023eeb0","primary_source":"","published":"2023-08-03T16:04:11.248Z"},{"affected":"unspecified < 3.4.1","affected_versions_present":true,"cve_id":"CVE-2023-3574","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-3574","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2024-10-30T14:35:46.384Z","patch_url":"https://github.com/pimcore/customer-data-framework/commit/f15668c86db254e86ba7ac895bc3cdd1a2a3cc45","primary_source":"","published":"2023-07-10T08:48:31.650Z"},{"affected":"unspecified < 3.3.10","affected_versions_present":true,"cve_id":"CVE-2023-2881","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-2881","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-01-16T15:15:04.522Z","patch_url":"https://github.com/pimcore/customer-data-framework/commit/d1d58c10313f080737dc1e71fab3beb12488a1e6","primary_source":"","published":"2023-05-25T00:00:00.000Z"},{"affected":"unspecified < 3.3.10","affected_versions_present":true,"cve_id":"CVE-2023-2756","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-2756","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-01-22T18:08:00.855Z","patch_url":"https://github.com/pimcore/customer-data-framework/commit/76df151737b7964ce5169fdf9e27a0ad801757fe","primary_source":"","published":"2023-05-17T00:00:00.000Z"},{"affected":"unspecified < 3.3.9","affected_versions_present":true,"cve_id":"CVE-2023-2629","cve_url":"https://cve.blacktree.nl/cve/CVE-2023-2629","fixed":"An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release.","last_modified":"2025-01-27T19:40:22.120Z","patch_url":"https://github.com/pimcore/customer-data-framework/commit/4e0105c3a78d20686a0c010faef27d2297b98803","primary_source":"","published":"2023-05-10T00:00:00.000Z"},{"affected":"3.0.0 \u2264 3.0.0","affected_versions_present":true,"cve_id":"CVE-2021-31867","cve_url":"https://cve.blacktree.nl/cve/CVE-2021-31867","fixed":"3.0.2","last_modified":"2024-09-16T17:34:30.111Z","patch_url":"https://www.rapid7.com/blog/post/2021/07/27/multiple-open-source-web-app-vulnerabilities-fixed/","primary_source":"","published":"2021-08-04T22:20:35.450Z"}],"source_generated_at":"2026-10-07T06:21:30.017Z","vendor":"pimcore"}}
