TYPO3-CORE-SA-2023-005: Information Disclosure in Install Tool
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
Read moreTYPO3-CORE-SA-2023-004: Cross-Site Scripting in CKEditor4 WordCount Plugin
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2023-003: Information Disclosure due to Out-of-scope Site Resolution
It has been discovered that TYPO3 CMS is susceptible to information disclosure.
TYPO3-CORE-SA-2023-002: By-passing Cross-Site Scripting Protection in HTML Sanitizer
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2023-001: Persisted Cross-Site Scripting in Frontend Rendering
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2022-017: By-passing Cross-Site Scripting Protection in HTML Sanitizer
It has been discovered that TYPO3 CMS is vulnerable to cross-site scripting.
TYPO3-CORE-SA-2022-016: Sensitive Information Disclosure via YAML Placeholder Expressions in Site Configuration
It has been discovered that TYPO3 CMS is susceptible to sensitive information disclosure.
TYPO3-CORE-SA-2022-015: Arbitrary Code Execution via Form Framework
It has been discovered that TYPO3 CMS is vulnerable to arbitrary code execution.
TYPO3-CORE-SA-2022-014: Insufficient Session Expiration after Password Reset
It has been discovered that TYPO3 CMS is susceptible to insufficient session expiration.
TYPO3-CORE-SA-2022-013: Weak Authentication in Frontend Login
It has been discovered that TYPO3 CMS is susceptible to weak authentication.