TYPO3-CORE-SA-2025-003: Cross-Site Request Forgery in Log Module
It has been discovered that TYPO3 CMS is susceptible to cross-site request forgery.
Read moreTYPO3-CORE-SA-2025-002: Potential Open Redirect via Parsing Differences
It has been discovered that TYPO3 CMS is susceptible to open redirect.
TYPO3-CORE-SA-2025-001: Information Disclosure via Exception Handling/Logger
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-012: Information Disclosure in TYPO3 Page Tree
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2024-011: Denial of Service in TYPO3 Bookmark Toolbar
It has been discovered that TYPO3 CMS is susceptible to denial of service.
TYPO3-CORE-SA-2024-010: Uncontrolled Resource Consumption in ShowImageController
It has been discovered that TYPO3 CMS is susceptible to denial of service.
TYPO3-CORE-SA-2024-009: Cross-Site Scripting in ShowImageController
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2024-008: Cross-Site Scripting in Form Manager Module
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2024-007: HTML Injection in History Module
It has been discovered that TYPO3 CMS is vulnerable to HTML injection.
TYPO3-CORE-SA-2024-006: Improper Access Control Persisting File Abstraction Layer Entities via Data Handler
It has been discovered that TYPO3 CMS is susceptible to information disclosure.